Clarum

Security

Enterprise-grade security built into every layer

Compliant in every way
Independently audited and certified to the highest standards.

SOC 2 Type II
SOC 2 Type II
Audited annually by an independent third party, covering security, availability, and confidentiality.
GDPR Compliant
GDPR Compliant
Full compliance with EU data protection regulations, including data processing agreements and residency controls.

Security in depth

Data Encryption
AES-256 at rest, TLS 1.3 in transit. Keys managed with automatic rotation.
Infrastructure
Isolated tenants with 24/7 monitoring, incident response, and regular third-party pen testing.
Access Controls
Role-based access with SSO. All access logged, auditable, and MFA enforced.
Authentication
Enterprise SSO via SAML 2.0 and OIDC. Configurable session timeouts and device trust.
Data Residency
Choose where your data lives to meet regional compliance and organizational policies.
No Model Training
Your data is never used to train AI models. All processing is ephemeral with strict data isolation.

Sourcing. Diligence. Monitoring. Reporting.
Finally automated.