Security & Compliance

Our security meets the highest industry standards

SOC 1 and SOC 2 Compliance

Circit has achieved both SOC 1 and SOC 2 Type II compliance. This reflects our strong commitment to maintaining industry recognised standards in security, reliability, and control assurance.

SOC 1 is an independent audit standard that validates the internal controls that support financial reporting. SOC 2 is a compliance standard developed by the American Institute of CPAs (AICPA) that focuses on the security and privacy of customer data. Together, these certifications provide customers with greater confidence in the strength and consistency of Circit's control environment.

SOC Report
SOC Report

ISO 27001:2022 Certified

Circit and its staff are governed by robust procedures and administrative controls which are certified to the highest international security certification standards. Our focus on security protects your clients’ highly sensitive data in the most robust way.

See ISO Certificate
See ISO Certificate

Audit Trail

Circit creates a comprehensive and immutable audit trail between all parties, embedding a timestamp, digital certificate, IP address and end-user information.

Certificate of Completion from Circit showing document title, reference ID, digital signature ID, security events with status and timestamps, and user audit trail details.

Encryption

All content is encrypted in transit and at rest. Cryptographic keys are safeguarded using Hardware Security Modules (HSM’s) which are FIPS 140-2 Level 2 validated.

Stylized layered digital shield icon representing encryption or data security.

Data Security

Circit has been built with security at its foundation and leverages Microsoft Azure to ensure multi-layered security is in place. Physical datacentres, infrastructure, firewalls and operations all have active monitoring ongoing everyday to protect your clients' assets and financial data.

Certified Carbon Neutral Business

Circit is proud to be a certified carbon neutral business. We have met all Carbon Neutral Britain Certification™ standards, ensuring that our organisational carbon emissions, including those within Scope 1, 2, and 3 GHG emissions, are fully measured, calculated, and offset.

See Carbon Neutral Certificate
See Carbon Neutral Certificate
Logo with text 'Carbon Neutral Britain' above a stylized white Union Jack flag and the Citizens UK logo.

GDPR

We are fully compliant and regulator approved

PSD2 Regulated Platform

Circit is the only directly regulated platform focused on audit technology. Meeting the EBA and FCA standards as a Regulated Account Information Services Provider provides additional assurance over the security and control of your clients' data. There is no requirement for you to be regulated or become an agent when using the platform as a firm.

GDPR Compliant

We are fully compliant with EU General Data Protection Regulations. All data and sub-processors in the platform remain in the EU. Our strict adherence to GDPR and our data security helps customers to ensure their own compliance.

International Auditing Standards

We are fully compliant with the International Standards on Auditing ISA 505 external confirmations.

Legally Binding

Circit uses eIDAS digital certificates to ensure documents signed within the platform are highly secure and legally binding.

Want to know more?

See what Circit can do for your firm

Request a demo
Request a demo