Home Overview Platform Architecture Performance & Benchmarks Pricing & ROI Calculator Global Edge Network Enterprise Trust Center Company & US Offices Contact & Support Launch Cloud Project →

Trust Architecture & Verified Audits

Security isn't a checkbox at Vectis. Every micro-VM is hardware-isolated by Linux KVM, all inter-node mesh traffic is WireGuard-encrypted, and our US controls are independently audited annually.

AICPA SOC 2 TYPE II ✔ UNQUALIFIED OPINION

Security, Availability & Confidentiality

Audited by Scheirer & Co. CPAs (San Francisco, CA). Covers all 32 edge PoPs, automated patching workflows, employee background screening, and encrypted key management.

Report ID: VEC-SOC2-2026-Q2
ISO/IEC 27001:2022 ✔ CERTIFIED

Information Security Management (ISMS)

Certified by BSI Assurance. Comprehensive governance of physical datacenter perimeter security, distributed software supply chain security (SLSA Level 3), and disaster recovery.

Cert ID: ISMS-US-991204
HIPAA & HITECH COMPLIANT ✔ BAA READY

Protected Health Information (ePHI)

Enterprise customers can execute standard Business Associate Agreements (BAAs) with dedicated sovereign enclaves and customer-managed KMS keys (AWS KMS / HashiCorp Vault).

HIPAA BAA Template v4.2
FEDRAMP MODERATE (IN-PROCESS) PMO REVIEW

US Public Sector & Financial Grade

PCI-DSS Level 1 Service Provider certified for processing cardholder transactions. FedRAMP Moderate package under agency sponsorship for US federal deployments.

PCI AOC #VEC-PCI-2026

Continuous Penetration Auditing

We conduct bi-annual grey-box and black-box penetration tests with premier offensive security firms (Cure53 & NCC Group). Our hypervisors and eBPF kernel patches undergo continuous automated fuzzing.

Last Audit: July 2026 (Cure53) 0 Critical / 0 High Findings

HackerOne Bug Bounty Program

We reward responsible security researchers through our public HackerOne bounty program with payouts up to $25,000 for hypervisor escape or kernel-level memory flaws.

Submit Vulnerability Report