Compliance built for regulated data
Medovac supports the frameworks that regulated organizations depend on. Our compliance program is independently audited and continuously maintained, so you can adopt automated data science without compromising your obligations.
Standards we support
SOC 2 Type II
Independently audited controls for security, availability, and confidentiality. Our current report is available to customers and prospects under NDA.
ISO/IEC 27001
Our information security management system is certified to the ISO 27001 standard, covering risk assessment, controls, and continuous improvement.
GDPR & UK GDPR
We act as a processor for customer data, offer a Data Processing Addendum, and support data-subject rights and Standard Contractual Clauses for international transfers.
HIPAA readiness
For healthcare and life-sciences customers handling protected health information, we support HIPAA-aligned safeguards and will sign a Business Associate Agreement on Enterprise plans.
Controls that map to your obligations
Financial services
Model lineage, audit logs, and access controls support model-risk management expectations and internal audit requirements.
Healthcare & life sciences
HIPAA-aligned controls, isolated data planes, and configurable retention help you keep protected health information governed.
Retail & consumer
Regional data residency and consent-aware processing help you honor consumer privacy commitments across markets.
Request compliance documentation
Our security and compliance team can share our SOC 2 report, ISO 27001 certificate, subprocessor list, penetration test summary, and Data Processing Addendum under NDA. Reach out and we will get you what your review requires.
Contact complianceSee Medovac on your own data
Book a technical walkthrough with our field data science team. We will connect a sample of your data and show governed, production-grade intelligence in under an hour.