Frequently Asked Questions (FAQs)
SafeCall’s technical infrastructure and security webpage addresses critical questions about our enterprise whistleblowing platform’s technical capabilities and security protocols.
The page covers comprehensive solutions including UK-based data centres, GDPR compliance, and robust security frameworks aligned with ISO 27001 standards.
Key features include enterprise-scale capacity supporting millions of users, customizable workflows, and automated routing systems.
Security measures encompass incident response procedures, data sovereignty protocols, and cross-border transfer mechanisms.
These FAQs outline SLA commitments, performance benchmarks, and security guarantees, demonstrating our commitment to maintaining the highest technical and security standards for global compliance requirements.
-
Where are your data centres located?
All our data centres are based in the UK, ensuring full compliance with GDPR. We apply strict data protection measures covering retention, security, and redaction.
-
What security certifications and compliance standards do you maintain?
Safecall is certified to ISO27001 by BSI UK. Our infrastructure also meets compliance standards including HIPAA, FedRAMP, SOC1, SOC2, UK G-Cloud, ISO 9001, ISO 37001, and ISO 27001.
-
Do you offer two-factor authentication?
Yes. All client access is protected using two-factor authentication, and we carry out regular independent penetration testing to ensure our security controls remain effective. We also support Single Sign-On (SSO) for organisations using OpenID Connect.
-
What encryption standards do you use for data protection?
We use AES256 encryption to protect data at rest, alongside Transport Layer Security (TLSv2) for all connections and public endpoints. These are recognised industry standards designed to keep your data secure.