Open menu
Security & compliance

Compliance isn't optional. So we built it in.

Privacy-preserving encryption. Data residency by design. Audit-ready by default.

Certifications

Current certifications.

ISO · 27001In progress

ISO 27001 aligned

Certification in progress via the Marketsoft ISMS.

Azure · SOC 2 IICertified infrastructure

Azure SOC 2 Type II

IdentityPulse runs entirely on Microsoft Azure, which is SOC 2 Type II certified.

AU · ISMAligned

Australian ISM

Aligned to the Australian Government Information Security Manual.

Compliance Architecture · 01

Identity matching, without decrypting the underlying data.

IdentityPulse's matching layer operates without decrypting underlying reference data. Privacy-preserving encryption protects PII in transit, at rest, and during the match.

Standard verification responses return match signals only - no personal data. The architecture eliminates plain-text PII exposure as a breach surface and satisfies GDPR's data minimisation principle by design.

Request a technical deep-dive →
Compliance Architecture · 02

Your data stays in your jurisdiction.

Regional match nodes ensure PII never crosses borders. Routing is client-pinnable for strict residency requirements.

EU Node

West Europe

Azure West Europe. GDPR-compliant residency for EU clients.

eu.api.identitypulse.ai
NA Node

East US 2

Azure East US 2. CCPA and US-resident data compliance.

us.api.identitypulse.ai
APAC Node

Australia East

Azure Australia East. APAC residency and primary HQ region.

au.api.identitypulse.ai
Regulatory alignment

Regulatory alignment.

How the IdentityPulse architecture maps to the regulatory frameworks our clients operate under.

European Union

GDPR

Data minimisation by architecture. Right to be Forgotten supported through transient client payload handling.

eIDAS 2.0

Compatible with the EU Digital Identity Wallet framework.

AMLD6

Identity verification audit trail meets the Sixth Anti-Money Laundering Directive requirements.

PSD3

Strong Customer Authentication requirements supported.

DORA

Operational resilience requirements addressed through Azure infrastructure and regional failover.

United States & North America

CCPA

California consumer rights supported. Data residency in East US 2 for US-domiciled clients.

GLBA

Gramm-Leach-Bliley Act safeguards aligned through encryption-in-transit and encrypted matching.

FinCEN

Identity verification audit log meets FinCEN record-keeping requirements.

Reg S-P

SEC Regulation S-P privacy of consumer financial information addressed.

Reg S-ID

SEC Identity Theft Red Flags Rule supported.

Take the security overview to your team.

Security Overview — One Page

Compliance posture, architecture, certifications, regulatory alignment.

Download PDF →
Next steps

Have a specific compliance question? Talk to our team.

ISO 27001 300–7,500 QPS Azure-native Encrypted matching
×

Talk to us.

We typically reply within one business day.

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.