Home / Trust Center Trust Center

Security is not claimed. It is evidenced.

Our compliance posture, operational status and security practices: published, dated, and independently audited.

Uptime · 12 mo99.99%
Last security audit03 JUN 2026
Threats blocked today1,284,392
Transport securityTLS 1.3
Compliance

Certified, aligned, and audit-ready

CERTIFIED

SOC 2 Type II

Annual examination of security, availability and confidentiality controls. Report available under NDA.

CERTIFIED

ISO/IEC 27001

Information security management system covering Dubai hub operations and delivery practices.

ALIGNED

GDPR

Data protection by design and default: processing records, DPAs and EU SCCs in place.

READY

NIS2 Directive

Capability mapping for essential-entity clients operating under EU jurisdiction.

READY

CCPA

California consumer rights honoured through the same self-service privacy controls.

READY

EU AI Act

AI-driven defense portfolio assessed against transparency and risk-tier obligations.

Global Activity

Threat activity across monitored estates

DETECTION NEUTRALIZED SIMULATED FEED · ILLUSTRATIVE
Practices

How we hold ourselves

  • ENC
    Encryption everywhere

    TLS 1.3 in transit, AES-256 at rest, customer-managed keys supported; crypto-agile design for PQC transition.

  • PEN
    Continuous testing

    Quarterly third-party penetration tests; automated dependency and configuration scanning in CI/CD.

  • IR
    Incident response

    24/7 on-call, 1-hour acknowledgement SLA for critical events, post-incident reviews shared with affected clients.

  • ACC
    Least privilege

    Role-based access, hardware-key MFA for all staff, quarterly access recertification.

  • VEN
    Vendor risk

    Every portfolio vendor passes security due diligence before distribution, and re-assessment annually.

Coordinated Disclosure

Found a vulnerability?

We welcome good-faith security research. Report findings to security@cyninges.com. We acknowledge within 24 hours, and we don't pursue legal action against researchers acting in good faith.

Our /.well-known/security.txt publishes the current disclosure policy, PGP key and scope.

PGP-ENCRYPTED REPORTS ACCEPTED · SAFE HARBOR HONOURED
Contact the security team
Evidence

Request our audit reports under NDA.