Keiji AI LogoKeiji AI

Cybersecurity at Keiji AI

Protecting your data and our platform with enterprise-grade security measures, comprehensive policies, and continuous monitoring.

Our Security Principles

Defense in Depth

Multiple layers of security controls to protect against various threat vectors

Least-Privilege Access

Every identity verified, and access scoped to what each role needs

Continuous Monitoring

Logging and alerting on production systems, with a documented incident response process

Data Protection

Encryption at rest and in transit, with strict data handling procedures

Security Measures

Infrastructure Security
  • AWS cloud infrastructure with enterprise-grade security
  • Network segmentation and firewall protection
  • Regular security assessments
  • Automated vulnerability scanning and remediation
  • Secure configuration management
Data Security
  • AES-256 encryption for data at rest
  • TLS 1.2+ encryption for data in transit
  • Secure data backup and recovery procedures
  • Data retention and disposal policies
Access Control
  • Multi-factor authentication (MFA) required
  • Role-based access control (RBAC)
  • Principle of least privilege
  • Regular access reviews and deprovisioning
Incident Response
  • Documented incident response procedures
  • Defined roles and escalation paths
  • Customer notification of security incidents

Compliance & Certifications

SOC 2 Type I & Type II
Audited

Independent attestation of controls for security, availability, and confidentiality

ISO 27001
Certified

Certified information security management system (ISMS)

HIPAA
Compliant

HIPAA Security Rule safeguards, with Business Associate Agreements available

Security Policies

Information Security Policy

Comprehensive framework for protecting information assets

Data Classification Policy

Guidelines for classifying and handling different types of data

Incident Response Policy

Procedures for detecting, responding to, and recovering from security incidents

Access Control Policy

Standards for user access management and authentication

Vendor Security Policy

Requirements for third-party vendor security assessments

Business Continuity Policy

Plans for maintaining operations during disruptions

Threat Intelligence & Monitoring

Monitoring

  • •Centralized logging of production systems
  • •Alerting on security-relevant events
  • •Vulnerability scanning of infrastructure and dependencies

Security Awareness

  • •Security training for all employees
  • •Security incident reporting procedures
  • •Independent third-party audits (SOC 2, ISO 27001)

Security Concerns?

If you have any security concerns or would like to report a vulnerability, please contact our security team immediately.

Security Team: security@keiji.ai

Vulnerability Reports: security@keiji.ai