Security You Can Trust
Phoenix AI is built with enterprise-grade security at its core. Your compliance data is protected by industry best practices and rigorous security controls.
Our Security Practices
We implement industry best practices for data protection and security. While we continuously work toward formal certifications, our security controls are designed to meet enterprise requirements.
Data Protection
Encryption at Rest
AES-256 encryption for all stored data
Encryption in Transit
TLS 1.3 for all network communications
Key Management
Hardware Security Modules (HSM) for key storage
Data Isolation
Tenant-isolated databases and storage
Access Control
Multi-Factor Authentication
Required for all user accounts
Role-Based Access
Granular permissions by role and resource
SSO Integration
SAML 2.0 and OAuth 2.0 support
Session Management
Automatic timeout and device tracking
Infrastructure
Cloud Hosting
AWS/GCP with EU data residency options
Network Security
WAF, DDoS protection, VPC isolation
Backup & Recovery
Daily backups with 30-day retention
99.9% Uptime SLA
Redundant infrastructure and failover
Monitoring & Response
24/7 Monitoring
Continuous security event monitoring
Incident Response
Documented IR procedures and team
Vulnerability Management
Regular scanning and patching
Penetration Testing
Annual third-party security assessments
Blockchain-Anchored Integrity
Beyond traditional security, every document and calculation in Phoenix AI is cryptographically anchored to the blockchain. This provides an additional layer of integrity verification that can be independently verified by any party.
Learn About Blockchain ValidationData Privacy
Data Hosting
Our services are currently hosted on dedicated infrastructure. Contact us to discuss specific data residency requirements for your organization.
Data Collection
We collect vessel positioning data, charter information, and account details necessary to provide our compliance services.
Data Retention
Contact our team to request data export or deletion. We aim to respond to all privacy requests within 30 days.
Questions?
For specific questions about how we handle your data, please contact our privacy team directly.
Security Questions?
Our security team is available to answer questions and provide additional documentation for enterprise security reviews.
security@phoenixai.app
dpo@phoenixai.app
Report vulnerabilities responsibly