Snapshot 67138
Normalized text
Scripts and page chrome removed; this is what change detection compares.
Welcome to Verato’s Trust and Compliance Program At Verato, trust is woven into the fabric of everything we do. To keep your data safe and private, we deploy industry-leading safeguards for security and to manage our systems. To earn your trust, we make it a point to transparently share our security and compliance program with you. All the information that we share with you is a real-time feed from the compliance program in Trust Cloud. We continuously monitor, test, improve, and share our security, and compliance program, so you can rest easy knowing that we are safely managing the integrity of your data, and continue to be conscientious about the trust bestowed in us. About Verato, Inc. (Verato) is a software solutions company founded in 2012. Verato offers cloud-based solutions powered by Verato Referential Matching® technology, enabling companies to match and link personal data across the enterprise with unprecedented ease and accuracy. Verato’s Information and Identity Resolution Matching Services are provided to various industries, including but not limited to, healthcare, government agencies, hospitality, and information services. At Verato, we are identity experts working to enable better care everywhe... Looking for something specific? Search across Verato’s security, trust, and compliance program 2 Certifications HITRUST · 1 Verato has successfully completed a HITRUST audit, via an independent assessment by a certified auditor. Our certification demonstrates compliance with a common set of security controls mapped to various standards. Learn More SOC 2 Type II · 1 Verato is actively preparing for a Service Organization Control 2 (SOC 2) Type II audit of our control environment via an independent assessment by a certified auditor. Learn More 11 Documents 2025 - Q1 ExternalPentest Request Access 2025 Q1 Full Pentest Request Access ISO 27001 Questionnaire Request Access Verato 2025� HITRUST r2 Cert- Ltr- (Final) Request Access Verato_CAIQ - 4-0-1 Request Access Verato_CIS Top 5 - 7-1 Request Access Verato_HIPAA - v-1 2021 Request Access Verato_VSA CORE - 2019 Request Access + 3 more View All 4 Policies Data Security and Privacy ·2 Data Access Data Sensitivity View All Security Operations ·2 Incident Management Plan Information Security Policy Overview View All 999 Continuously Monitored Controls Applications · 7 Cryptography Encryption Documentation Privacy Impact Review Privacy by Design and Default Policy Responsible Disclosure See 2 more controls Business Operations Process · 102 ASV Scan Report Access Policy Asset Management Policy Audit Log Storage Audit Logging and Monitoring See 97 more controls Cloud Infrastructure · 15 Fault Tolerance Firewall Ruleset Review Firewalls Host hardening Intrusion detection See 10 more controls Customers · 9 Audit Trail Documentation site Master Services Agreement Privacy Policy Product Security Controls See 4 more controls Data · 16 Application Processing Error Handling Application Processing Log Data Disposal Data Handling Data Input Validation See 11 more controls IT Infrastructure · 16 Acceptable Use Anti-Replay Protocol Asset Disposal Asset types Authentication Display Protection See 11 more controls Identity and Access Control · 9 Administrative access Automatic account lockout Company Restricted Systems Access Review Customer Confidential Systems Access Review Password Configurations See 4 more controls Monitoring · 9 Audit Logging Audit Logs Collection Review Continuous Monitoring File Integrity Monitoring Performance monitoring See 4 more controls Other Controls · 740 01 Information Protection Program requirement statement 1 01 Information Protection Program requirement statement 10 01 Information Protection Program requirement statement 11 01 Information Protection Program requirement statement 12 01 Information Protection Program requirement statement 13 See 735 more controls People · 22 Background checks Board Independence Board Oversight Board Qualifications Board of Directors See 17 more controls Physical Security · 3 Clear desk policy - PII Removable media Surveillance Cameras Privacy · 30 Authorized Agents Automated Decision-Making Complaints Handling Consent and Disclosure Tracking Data Access Requests See 25 more controls Product Delivery Process · 16 Agile Process Backup Plan Backup Storage Backup System Monitoring Capacity Planning See 11 more controls Vendors · 5 New vendor process Vendor Agreements Vendor Monitoring Vendor Offboarding Vendor risk assessment 5 Trust Leadership We believe that compliance is the responsibility of the entire company, and we have team members at different parts of the company who own and drive our compliance initiatives. Kevin BellroseCISO | Risk and Compliance Sid TayalVP, DevSecOps Clay RitcheyCEO Avi MukherjeeCTO & CPO Isaac HeCFO Request Access Interested in Learning More? Request access and we can share more information about our trust and compliance program.