Infrastructure Security
LogicCycle AI runs on SOC 2 Type II certified cloud infrastructure. Our platform is deployed across multiple availability zones with automatic failover and disaster recovery.
- All data encrypted in transit (TLS 1.3) and at rest (AES-256)
- Network isolation with VPC peering for enterprise customers
- DDoS protection and Web Application Firewall (WAF)
- Regular penetration testing by third-party security firms
Data Protection
Your data is your data. We implement strict controls to ensure it stays that way.
- Customer data is logically isolated at the application and database level
- We do not use customer data to train models
- Reasoning traces and outputs are encrypted with customer-specific keys
- Data residency options available for EU, US, and APAC regions
- Automatic data purge after configurable retention periods
Access Control
- Role-based access control (RBAC) with granular permissions
- SSO integration (SAML 2.0, OIDC) for enterprise customers
- Multi-factor authentication (MFA) enforced for all accounts
- API key rotation and scoped permissions
- Audit logs for all administrative actions
Compliance
- SOC 2 Type II certified
- GDPR compliant with Data Processing Agreements available
- CCPA compliant
- HIPAA BAA available for healthcare customers
- ISO 27001 certification in progress
Application Security
- Secure software development lifecycle (SSDLC)
- Automated vulnerability scanning in CI/CD pipelines
- Dependency scanning and automatic patching
- Code review required for all changes
- Bug bounty program for responsible disclosure
Incident Response
We maintain a documented incident response plan with defined escalation procedures. In the event of a security incident:
- Affected customers are notified within 72 hours
- Root cause analysis is published for significant incidents
- Remediation steps are implemented and verified
Responsible Disclosure
If you discover a security vulnerability, please report it to security@logiccycleai.co. We commit to acknowledging reports within 24 hours and providing a resolution timeline within 5 business days.