Security

Enterprise-grade security built for the organizations that need it most.

Arch is deployed in regulated industries where data security is not a feature, it is a requirement. Our security program is designed to meet the standards of the most demanding enterprise environments.

Certifications

Built to the standards your auditors and regulators expect.

Attestation

SOC 2 Type II

Independently audited controls for confidentiality, integrity, and availability. Renewed annually.

External

Trust Center

Visit our Trust Center for detailed security documentation, compliance reports, and real-time security posture information.

Visit
How we protect your data

Security that matches the sensitivity of the data we work with.

Your data is protected at rest and in transit with controls that meet the bar enterprises and regulators expect.

01 · At rest

AES-256 encryption

All data is encrypted at rest using AES-256, the same standard used by governments and financial institutions worldwide.

02 · In transit

TLS 1.2 minimum

Data in transit is protected by enforcing TLS 1.2 as a minimum, ensuring secure communication between your systems and Arch.

03 · Infrastructure

Hardened AWS

All data is stored on Amazon Web Services, leveraging their world-class physical security and infrastructure controls.

04 · Access

Role-based controls

Stringent access controls ensure only authorized personnel can access your data, with role-based permissions throughout.

Monitoring & auditability

End-to-end visibility with complete change tracking.

Comprehensive change tracking ensures transparency and auditability of all your data.

24/7 Monitoring

Constant monitoring

All systems and data access patterns are monitored around the clock.

Audit Trail

Every change logged

Every change is carefully logged for complete visibility during audits.

Approval Workflows

Verified entry

Built-in approval workflows ensure only verified data enters your systems.

Role-based Access

Granular permissions

Granular permissions control who can view and modify data across the platform.