Skip to Main Content

SECURITY AT TORCH

Customer trust is our highest priority

Our customers entrust Torch with sensitive organizational and employee data. That’s why we maintain the highest standards of data privacy and security.

OVERVIEW

We provide a
secure
and reliable cloud environment

Private Cloud

Our infrastructure is deployed in multiple availability zones to ensure 99.5% uptime. We have daily automatic backups that are configured for cross-region replication.

Encryption Standards

Torch employs encryption at all levels of our technology stack. All data in transit and at rest are encrypted using up to date encryption methods.

Infrastructure Security

We have implemented controls to design every layer of our infrastructure including automated vulnerability scans and comprehensive and centralized logging across all AWS accounts and resources

Application Security

Torch employs best practices for SaaS development. Our CI/CD pipeline includes automated and continuous static code analysis, dynamic code analysis, peer review, and change control process.

Know that we’ll handle your data securely and responsibly

In addition to existing controls, Torch continually improves our processes, procedures, and policies to maintain our customers’ privacy and security. To support these efforts we undergo regular third-party penetration tests and third-party audits from industry leaders.

Enterprise Ready Compliance

EU GDPR

At Torch, we value your privacy and have applied the laws and regulations of GDPR globally, handling all of our customers data in a way that is compliant with GDPR while also improving our products, processes, policies, and procedures for the benefit of your privacy and personal data protection.

ISO 27701

Torch is subject to an annual ISO 27701 audit, underscoring our unwavering commitment to safeguarding privacy and protecting personal information. This audit validates that our privacy management system adheres to the requirements of ISO 27701, providing customers with assurance that their privacy rights are respected and upheld in accordance with global privacy standards.

SOC 2 Type II

Torch performs an annual SOC 2 Type II audit, to demonstrate our continuous commitment to maintain security, availability, and confidentiality standards. Customers can be certain that our security program is in accordance with the [AICPA] Trust Services Principles and Criteria.

ISO 27001

Torch undergoes an annual ISO 27001 audit, affirming our steadfast dedication to upholding information security management standards. This audit assures customers that our information security management system aligns with internationally recognized best practices, ensuring the confidentiality, integrity, and availability of their data.

Security questions or issues?

Contact our security team: [email protected]