Security

Azuga Security Compliance Framework

Trusted and certified to protect your end-to-end telematics data with enterprise-grade security measures and by meeting the industry-leading SOC2 Type 2ISO/IEC 27001:2022 compliance standards.

Azuga Takes the Safety & Security of Your Data Seriously.

Azuga is both SOC2 Type 2 and ISO/IEC 27001:2022 certified. We take the security of your data seriously via our three-part Security Compliance Framework:
The Azuga Security Compliance Framework Diagram

Governance, Risk, & Compliance

Risk Management, Audit, & Compliance Programs

Bridgestone® Annual Assessments

Regular Vulnerability Scanning & Patch Management

Regular System Penetration Tests

Data Security Measures

Network & Infrastructure Security

Encryption

Data at-rest is encrypted using AES-256
Data in-transit uses TLS 1.2

Firewalls & Network Segmentation

AWS WAF Application Firewall
Akamai Firewall

VPN & Zero-Trust Architecture

VPN enabled with Multi-Factor Authentication (MFA) used for any access to system resources
Zero-Trust principle in-place to ensure access is only provided where nescessary

DDoS Protection

AWS Shield
Akamai
Identity & Access Management

Role-Based Access Control (RBAC)

Ensuring users only have access to the resources necessary for their role

Multi-Factor Authentication (MFA)

Adds an extra layer of security beyond passwords

Identity Governance

Managing user identities, roles, and permissions across the organization

Privileged Access Management (PAM)

Access to critical systems and data limited to privileged users only for the purposes of maintaining the system
Endpoint Security

Anti-Malware Solutions

Mobile Device Management (MDM)

Patch Management

Disk Encryption

Incident Response & Monitoring

24/7 Security Monitoring

Continuous monitoring of systems for suspicious activity.

Security Information & Event Management
(SIEM)

Gathering and analyzing security data to detect and respond to threats.

Incident Response Plans

Prepared for handling security breaches or cyber attacks.

Forensics & Investigation

Analyzing security incidents to determine their cause and impact.

Disaster Recovery & Business Continuity Planning

Ensuring minimal disruption in the event of a security incident or disaster.

Threat Intelligence & Response

AWS Guard Duty in place to detect any threats targeting AWS resources. Intrusion detection systems.

Frequently Asked Questions

Is Azuga ISO/IEC 27001:2022 Certified?

Yes! Azuga is ISO/IEC 27001:2022 certified based on the International Standard for Information Security Management Systems (ISMS).

Is Azuga SOC2 Type 2 Certified?

Yes! Azuga is SOC2 Type 2 Certified.