Awardco Security & Compliance

Maximum data protection

The Awardco platform is trusted worldwide by clients of all sizes and industries for its comprehensive, customizable employee recognition solutions — and for its unparalleled protection of customer and employee data.

industry leader

Security and Compliance

AICPA SOC service organization certification logo on blue background
SOC2 Type II Compliance

The gold standard for a comprehensive security program, Awardco has achieved SOC2 Type 2 certification with all the requisite security principles.

HIPAA Compliant Training seal on blue background
HIPAA

HIPAA compliance ensures organizations safeguard patient data through strict confidentiality, integrity, and security measures.

GDPR logo with lock and EU stars representing data protection regulation
GDPR

The benchmark for data privacy, GDPR compliance ensures organizations protect personal data with transparency, security, and user control within the European Union.

CCPA padlock icon representing California privacy data protection law
CCPA/CPRA Compliance

CCPA/CPRA compliance ensures organizations uphold data protection rights and give consumers control over their personal information.

Green lock icon representing TLS 1.2 network security protocol
TLS 1.2 Encryption

TLS 1.2 ensures encrypted communication and protection against unauthorized access.

AES 256 encryption badge on blue background with jagged golden seal
AES 256 Encryption

AES 256 provides robust protection by securing sensitive information with powerful encryption.

data controls

Full platform data control

Complete data controls
You decide what data is collected, retained, and deleted. Every client has control over how long data is retained.
Sensitive data
Easily control the gathering and use of sensitive data or Personally Identifiable Information (PII) across the organization.
User access controls
Make user management simple with Single Sign-On (SSO) authentication. Multi-Factor Authentication (MFA) for users and One Time Password (OTP) are additionally available to assure a secure login experience.
GDPR
Quickly and easily comply with all GDPR Data Subject Access Requests (DSAR) such as right to erasure requests. Delete personal data regardless of data origination.
Customer Data Controls
You decide what data is collected, retained, and deleted. Every client has control over how long data is retained.
Admin reports
Get visibility into users and data with admin reports which highlight user engagement, activity, consumption, department-specific usage, and more.
Secure Operations

Platform data management and security

Security Operations Center (SOC)
Awardco’s team ensures the confidentiality, integrity, availability, and performance of data using advanced intrusion detection, performance monitoring, and security event correlation systems.
Incident response & BCDR
A thoroughly documented plan is in place to ensure data safety and security in the event of any potential issue.
Encryption of data in transit
To guard against attacks, eavesdropping, and session hijacking, Awardco encrypts all data in transit with HTTPS and enforces HTTP Strict Transport Security (HSTS).
Always confidential
All data is treated as highly confidential, with proprietary industry best practices ensuring protection from unauthorized access.
Information Security Management System (ISMS)
Awardco’s Information Security Management System (ISMS) governs the security function at Awardco, detailing the roles and responsibilities of all employees to safeguard the confidentiality, integrity, and availability of the platform.
Physical security controls
Essential data is always accessible, protected by perimeter defense, advanced firewall systems, and 24/7 monitoring by dedicated security professionals. Quick failover points, redundant hardware, and nightly encrypted backups ensure data availability at all times.

Security isn't just a priority — it's a promise.

If you have questions about our security practices or want a deeper dive into how we safeguard your data, we're here to help.

OSZAR »