Moby

Security & Compliance

Learn how Moby implements enterprise-grade security and compliance protocols across all services

What security certifications does Moby hold?
Moby maintains SOC 2 Type II, ISO 27001, and GDPR compliance certifications. Our architecture undergoes annual third-party audits to validate these standards.
How is data encryption implemented?
All data at rest uses AES-256 encryption. In-transit encryption employs TLS 1.3 with perfect forward secrecy. We also implement field-level encryption for sensitive data.
What breach notification procedures exist?
We adhere to 72-hour breach notification requirements per GDPR. Notifications are sent via configured channels with detailed incident reports including affected data scope and remediation steps.
How are vulnerabilities handled?
We maintain a 24x7 security operations center that monitors vulnerabilities. Confirmed issues follow a 7-day patching SLA with detailed mitigation strategies for customers.

Regulatory Compliance

SOC 2 Type II Compliant
ISO 27001 Certified
GDPR Compliant
CCPA Compliant