Verbix AI Logo
Verbix Security Portal

Verbix.ai Trust Center

We treat customer data as our own. This page sets out the certifications we hold, the controls we operate, the subprocessors we use, and how to obtain our audit reports.

Last updated 01 September 2026
Next review 01 March 2027
Certifications ISO 27001, SOC 2 Type II, HIPAA
Primary data region US (AWS / GCP)
Security contact security@verbix.ai
Contact the security team
ISO/IEC 27001:2022SOC 2 Type IISOC 2 Type IIHIPAA CompliantHIPAA CompliantGDPR ReadyPCI DSS

Security at a glance

The commitments below apply to every production environment that processes customer data.

Encryption at rest
AES-256
Encryption in transit
TLS 1.2 / 1.3
MFA coverage
100% of staff
Availability target
99.99% uptime
Penetration testing
Annual, third party
Recovery objectives
RTO 4h / RPO 1h
Security training
Annual, all staff
Backup frequency
Daily, encrypted

Certifications and attestations

Independent assessments held by the organisation. Copies of reports and certificates are available under the Documentation tab.

ISO/IEC 27001:2022

Certified

Certificate issued by Accredited Certification Body. Scope: AI Conversation Analytics & Platform Infrastructure.

SOC 2 Type II

SOC 2 Type II

Attested

Report issued by independent CPA audit firm covering Security, Confidentiality, and Availability.

HIPAA Compliant

HIPAA Compliant

Compliant

Data Processing Agreement, PHI physical/technical safeguards, and Business Associate Agreements (BAA) available on request.

Reporting a security issue

If you believe you have found a security vulnerability in our products or infrastructure, report it to our security team. We acknowledge reports within two business days and will keep you updated until the issue is resolved. Please do not disclose the issue publicly until we have confirmed a fix.