Overview
Siesta AI was built from the ground up by an experienced team with security, privacy, and compliance prioritized from day one. We follow modern security principles - including the zero trust security model, strong authentication practices, the principle of least privilege, and a shift-left approach that incorporates security into our design, development, and ops.
Compliance
-
ISO 27001Certified -
CASA Tier 2Certified -
GDPREU-Compliant
Policies
- Information Security Policy
- Data Management Policy
- Technical Vulnerability Management Policy
- Incident Response Policy
- Secure Development Policy
Controls
Infrastructure security
- Unique production database authentication
- Account authentication enforced
- Production data segmented
Organizational security
- Employee background checks
- Code of Conduct acknowledged by contractors
- Portable media encrypted
Internal security procedures
- Continuity and disaster recovery plans established
- Cybersecurity insurance maintained
Subprocessors
-
Microsoft AzureCloud infrastructure, hosting, storage, networking, security, and platform operations
-
OpenAIAI model provider for selected AI-powered functionality, where enabled -
SlackCommunication and collaboration
FAQs
See answers to common trust questions.
View More