Navless Trust Center
Navless's Trust Center details their comprehensive commitment to data privacy and security through SOC 2 Type 2 compliance, extensive documentation on security policies and procedures, robust product and app security measures including role-based access control and SSO support, dedicated teams for incident response and risk management, adherence to industry best practices for endpoint, network, and corporate security, use of major cloud hosting with defined recovery objectives, and strict data privacy and legal frameworks including cyber insurance and data processing agreements.
Trust Center
Welcome to Navless's Trust Center. Our commitment to data privacy and security is embedded in every part of our business. Use this Trust Center to learn about our security posture and request access to our security documentation.
Compliance
- SOC 2 Type 2
Documents
- SOC 2 Report
- SOC 2 Type 2
- Data Security
- Role-Based Access Control
- Data Backups
- Software Development Lifecycle
- Data Processing Agreement
- Master Services Agreement
- Logging
- Acceptable Use Policy
- Asset Management Policy
- Backup Policy
Risk Profile
- Recovery Point Objective: 24-48 hours
- Hosting: Major Cloud Provider
Product Security
- Data Security
- Role-Based Access Control
- SSO Support
Reports
- Network Diagram
- SOC 2 Report
Data Security
- Data Backups
- Geographic Location of Data
App Security
- Software Development Lifecycle
AI
We take the usage of AI seriously in our organization and work to ensure security and reliability of the AI.
Legal
- Cyber Insurance
- Data Processing Agreement
- Master Services Agreement
Data Privacy
Privacy of customer data is top of mind. We follow industry best practices and follow all applicable privacy regulations.
Access Control
- Logging
Infrastructure
- Status Monitoring
- Amazon Web Services
- Separate Production Environment
Endpoint Security
We follow industry best practices for endpoint security. We are happy to provide more details about our endpoint security practices upon request.
Network Security
We protect our corporate network against external & internal threats.
Corporate Security
- Employee Handbook
- Employee Training
Policies
- Acceptable Use Policy
- Asset Management Policy
- Backup Policy
Incident Response
We have a dedicated team that responds to security incidents. We are happy to provide more details about our incident response practices upon request.
Risk Management
We have a dedicated team that manages security risks. We are happy to provide more details about our risk management practices upon request.
Asset Management
We have strict asset management policies in place to ensure that all assets are accounted for and secure.
BC/DR
- Business Continuity Plan (BCP)
Training
We provide security awareness training to all employees to ensure that they are aware of security best practices.
Change Management
We have a change and configuration management process in place to ensure that changes are properly reviewed and approved.
Physical & Environment
We have physical and environmental controls in place to ensure that our data centers are secure and reliable.
Continuous Monitoring
We continuously monitor our systems for security threats and vulnerabilities. We are happy to provide more details about our continuous monitoring practices upon request.