🏆 Arya wins MedTech Breakthrough Award
SOC 2 Type 2 & HIPAA Compliant

Trust and Security at aryahealth.ai

We're committed to protecting your data with industry-leading security practices and compliance standards. Your trust is our foundation.

Security Certifications

Our commitment to security and compliance is validated by industry-standard certifications.

SOC 2 Type 1

We've completed SOC 2 Type 1 certification, verifying our security controls are properly designed.

SOC 2 Type 2

Our SOC 2 Type 2 certification confirms our security controls operate effectively over time.

HIPAA Compliant

We maintain full HIPAA compliance for protecting sensitive healthcare information.

How we protect your data

Your organization's data is encrypted, access-controlled,
and monitored around the clock.

Data Encryption

Every record is encrypted in transit and at rest.

Access Controls

Access is role-based, authenticated, and logged. People see only what their role requires.

Secure Infrastructure

Access is role-based, authenticated, and logged. People see only what their role requires.

Regular Audits

Access is role-based, authenticated, and logged. People see only what their role requires.

Continuous Monitoring

Access is role-based, authenticated, and logged. People see only what their role requires.

Data Isolation

Each customer's data is isolated, with hard boundaries between environments.

Continuouslys monitored by Secureframe

Monitoring

Loading...

Frequently Asked Questions

Find answers to common questions about our security
and compliance practices.

Arya maintains SOC 2 Type 1, SOC 2 Type 2, and HIPAA compliance certifications. These certifications demonstrate our commitment to maintaining the highest standards of security, availability, and confidentiality in our systems and processes.

We employ multiple layers of security to protect your data, including encryption at rest and in transit, strict access controls, regular security audits, and 24/7 monitoring. Our infrastructure is designed with security as a fundamental principle, and we regularly update our systems to address emerging threats.

Yes, we're happy to provide copies of our security certifications to customers and prospective customers under NDA. Please contact our security team through the contact form on this page to request documentation.

Yes, Arya is fully HIPAA compliant. We implement all required administrative, physical, and technical safeguards to protect health information. We also provide Business Associate Agreements (BAAs) to customers who require them for HIPAA compliance.

SOC 2 Type 1 certifies that our security controls are properly designed at a specific point in time. SOC 2 Type 2 goes further by certifying that these controls are operating effectively over a period of time (typically 6-12 months). Having both certifications demonstrates our ongoing commitment to security.

We conduct regular internal security assessments on a quarterly basis and engage third-party security firms to perform penetration testing annually. Additionally, we maintain continuous monitoring of our systems and perform vulnerability scans weekly.

Built To Scale

Contact Our Security Team

Have questions about our security practices or need more information about our compliance? Our security team is here to help.

Phone Support

Our dedicated security line is available Monday-Friday, 9am-5pm ET.

Email

For security inquiries or to request compliance documentation.

Security Reports

To report a security vulnerability, please contact our security team directly.

Send us a message

Automate the Mundane, Focus on the Meaningful

Hire Arya.

Ask AI about Arya