Certifications and Compliance
Committed to the highest standards of security, privacy and international regulatory compliance
International Certifications
Audited and certified by leading global security and quality organizations
ISO/IEC 27001
Information Security
International certification for information security management
Certified since 2023
PCI-DSS Level 1
Payment Security
Compliance with payment card industry data security standards
Certified since 2023
SOC 2 Type II
Service Controls
Audit of organizational controls relevant to security and privacy
Certified since 2024
ISO/IEC 27017
Cloud Security
Information security controls for cloud services
Certified since 2023
ISO/IEC 27018
Cloud Privacy
Protection of personal data in public clouds
Certified since 2023
Tier III
Data Center
Infrastructure availability and redundancy certification
Certified since 2022
Regulatory Compliance
Compliant with major data protection and privacy legislation
LGPD
General Data Protection Law
Full compliance with Brazilian personal data protection legislation
Established processes for data access, correction and deletion
GDPR
General Data Protection Regulation
Compliance with European data protection regulation
Privacy incorporated from system design
HIPAA
Health Insurance Portability and Accountability Act
Compliance with health data regulation
HIPAA-compliant infrastructure available for sector clients
Security Practices
Controls and processes implemented to ensure the security of your data
Data Encryption
- AES-256 encryption for data at rest
- TLS 1.3 for data in transit
- Secure key management (HSM)
- Free SSL/TLS certificates
Access Controls
- Mandatory multi-factor authentication (MFA)
- Role-based access control (RBAC)
- Complete access auditing
- Biometrics in data centers
Monitoring & Response
- SOC (Security Operations Center) 24/7
- SIEM for security event analysis
- IDS/IPS across all infrastructure
- Incident response plan
Business Continuity
- Automatic encrypted backup
- Disaster Recovery Plan (DRP)
- Regular recovery testing
- 99.99% availability SLA
Audit Reports
Access our certificates and compliance reports
SOC 2 Type II Report
Annual audit of operational controls
ISO 27001 Certificate
Information security management certification
PCI-DSS Attestation
PCI-DSS Level 1 compliance attestation
To request access to complete reports, talk to specialist
Canal de Denúncia
Não é necessária a identificação do denunciante, e o acompanhamento do andamento pode ser feito por meio de protocolo gerado após o envio da denúncia.