Governance, risk management & compliance
Taking every possible step to ensure the integrity of customer data means starting with our own operations. Our dedicated Governance, Risk, and Compliance (GRC) team plays a pivotal role in defining security policies, conducting risk assessments, and overseeing compliance efforts to safeguard sensitive information.
SOC 1 Type II
This accreditation showcases Matillion's dedication to creating, implementing, and maintaining security policies and practices that align with AICPA principles.
SOC 2 Type II
Matillion undergoes annual external audits to monitor the design, implementation, and effectiveness of its controls in accordance with the AICPA’s criteria.
ISO 27001
Matillion has completed surveillance audits with no reported non-conformities, underscoring its commitment to information security management.
GDPR
Matillion complies with all obligations under the European Union’s General Data Protection Regulation (GDPR) and DPA2018.
Safeguarding data at rest and in transit
Matillion employs comprehensive encryption protocols to protect data both at rest and in transit, ensuring data confidentiality and integrity throughout our platform.
Data at Rest
By default, Matillion enables encryption on all storage solutions, utilizing the Advanced Encryption Standard (AES) with a 256-bit key length (AES-256) for strong and resilient data protection.
Data in Transit
The Data Productivity Cloud supports the latest Transport Layer Security (TLS) protocols, including TLS 1.2 and 1.3, providing strong encryption for data in transit.
Responsible and robust data
privacy in the AI era
Matillion’s intelligent AI features, including Maia, are not trained using customer data. You have to opt-in to use any of our AI functions, so you’ll always be asked for consent, and you can disable the features at any time. When using AI within pipelines, all data is encrypted in transit.
More about secure AI
Visit the Matillion Trust Center
for complete peace of mind
Matillion’s Trust Center provides full public access, without an NDA, to all our certifications and compliance documentation. Easily check that we hold the appropriate accreditations, and access reports and policies including business continuity and disaster recovery information.
Explore the Trust Center