Awardco Security & Compliance

Maximum Data Protection

The Awardco platform is trusted worldwide by clients of all sizes and industries for its comprehensive, customizable employee recognition solutions — and for its unparalleled protection of customer and employee data.

Security & Compliance Industry Leader

SOC2 Type II Compliance

The gold standard for a comprehensive security program, Awardco has achieved SOC2 Type 2 certification with all the requisite security principles.

HIPAA

HIPAA compliance ensures organizations safeguard patient data through strict confidentiality, integrity, and security measures.

GDPR

The benchmark for data privacy, GDPR compliance ensures organizations protect personal data with transparency, security, and user control within the European Union.

CCPA/CPRA Compliance

CCPA/CPRA compliance ensures organizations uphold data protection rights and give consumers control over their personal information.

TLS 1.2 Encryption

TLS 1.2 ensures encrypted communication and protection against unauthorized access.

AES 256 Encryption

AES 256 provides robust protection by securing sensitive information with powerful encryption.

Full Platform Data Control

Customer Data Controls

You decide what data is collected, retained, and deleted. Every client has control over how long data is retained. 

Sensitive Data

Easily control the gathering and use of sensitive data or Personally Identifiable Information (PII) across the organization.

User Access Controls

Make user management simple with Single Sign-On (SSO) authentication. Multi-Factor Authentication (MFA) for users and One Time Password (OTP) are additionally available to assure a secure login experience.

Recognition Approval Controls

Control the quality and content of employee recognitions in the platform, and allow flagging of inappropriate content. 

GDPR

Quickly and easily comply with all GDPR Data Subject Access Requests (DSAR) such as right to erasure requests. Delete personal data regardless of data origination.

Admin Reports

Get visibility into users and data with admin reports which highlight user engagement, activity, consumption, department-specific usage, and more.

Platform Data Management & Security

Security Operations Center (SOC)

Awardco’s team ensures the confidentiality, integrity, availability, and performance of data using advanced intrusion detection, performance monitoring, and security event correlation systems.

Incident Response and BCDR

A thoroughly documented plan is in place to ensure data safety and security in the event of any potential issue. Awardco has built its infrastructure for high availability and has processes to assure business continuity.

Encryption of Data in Transit

To guard against attacks, eavesdropping, and session hijacking, Awardco encrypts all data in transit with HTTPS and enforces HTTP Strict Transport Security (HSTS).

Always Confidential

All data is treated as highly confidential, with proprietary industry best practices ensuring protection from unauthorized access.

Information Security Management System (ISMS)

Awardco’s Information Security Management System (ISMS) governs the security function at Awardco, detailing the roles and responsibilities of all employees to safeguard the confidentiality, integrity, and availability of the platform.

Physical Security Controls

Essential data is always accessible, protected by perimeter defense, advanced firewall systems, and 24/7 monitoring by dedicated security professionals. Quick failover points, redundant hardware, and nightly encrypted backups ensure data availability at all times.