SOC 2 Type 1
We've completed SOC 2 Type 1 certification, verifying our security controls are properly designed.
We're committed to protecting your data with industry-leading security practices and compliance standards. Your trust is our foundation.
Our commitment to security and compliance is validated by industry-standard certifications.
SOC 2 Type 1
We've completed SOC 2 Type 1 certification, verifying our security controls are properly designed.
SOC 2 Type 2
Our SOC 2 Type 2 certification confirms our security controls operate effectively over time.
HIPAA Compliant
We maintain full HIPAA compliance for protecting sensitive healthcare information.
Your organization's data is encrypted, access-controlled, and monitored around the clock.
Data Encryption
Every record is encrypted in transit and at rest.
Access Controls
Access is role-based, authenticated, and logged. People see only what their role requires.
Secure Infrastructure
Access is role-based, authenticated, and logged. People see only what their role requires.
Regular Audits
Access is role-based, authenticated, and logged. People see only what their role requires.
Continuous Monitoring
Access is role-based, authenticated, and logged. People see only what their role requires.
Data Isolation
Each customer's data is isolated, with hard boundaries between environments.
Loading...
Find answers to common questions about our security and compliance practices.
Arya maintains SOC 2 Type 1, SOC 2 Type 2, and HIPAA compliance certifications. These certifications demonstrate our commitment to maintaining the highest standards of security, availability, and confidentiality in our systems and processes.
We employ multiple layers of security to protect your data, including encryption at rest and in transit, strict access controls, regular security audits, and 24/7 monitoring. Our infrastructure is designed with security as a fundamental principle, and we regularly update our systems to address emerging threats.
Yes, we're happy to provide copies of our security certifications to customers and prospective customers under NDA. Please contact our security team through the contact form on this page to request documentation.
Yes, Arya is fully HIPAA compliant. We implement all required administrative, physical, and technical safeguards to protect health information. We also provide Business Associate Agreements (BAAs) to customers who require them for HIPAA compliance.
SOC 2 Type 1 certifies that our security controls are properly designed at a specific point in time. SOC 2 Type 2 goes further by certifying that these controls are operating effectively over a period of time (typically 6-12 months). Having both certifications demonstrates our ongoing commitment to security.
We conduct regular internal security assessments on a quarterly basis and engage third-party security firms to perform penetration testing annually. Additionally, we maintain continuous monitoring of our systems and perform vulnerability scans weekly.
Have questions about our security practices or need more information about our compliance? Our security team is here to help.
Phone Support
Our dedicated security line is available Monday-Friday, 9am-5pm ET.
For security inquiries or to request compliance documentation.
Security Reports
To report a security vulnerability, please contact our security team directly.
Send us a message