Skip to main content
Avature

The Avature Privacy Difference

For over 15 years, Avature has helped organizations meet their data privacy goals with a platform that prioritizes flexibility and control. Easily configurable privacy settings ensure compliance with a wide range of global regulations—including GDPR, CCPA, HIPAA, PIPEDA, PIPL, APPI, and the Australian Privacy Act—and our approval for global Binding Corporate Rules (BCRs) underscores our commitment to the highest privacy standards

Backed by mature organizational controls, advanced technical safeguards and robust data localization capabilities, Avature offers one of the most comprehensive privacy-compliant data processing solutions on the market.

Explore our detailed privacy policy to discover how Avature keeps your data secure and compliant. You can also learn more about our regional hosting options here.

Certifications & Audits

Our operations, policies and controls undergo regular audits to ensure that Avature meets and exceeds all requirements expected of a world-class technology service provider. Our commitment to maintaining our ISO, SOC 1 and SOC 2 certifications supports Avature's standard of excellence.

Registrations, Self-Assessment & Standards

Industry Leaders Trust in Avature

9
of the world's 15
largest banks
5
of the 10 largest
tech companies
28
of the Forbes
Global 100

Comprehensive Protection for Your Data

At Avature, security is a cornerstone of our platform. While you retain full control over your data, we ensure that all processing is carried out using state-of-the-art practices.

Physical Security

Our data centers are high-security, ISO or SOC-certified facilities with perimeter fencing. Security personnel monitor them 24/7 and control access to multiple security zones.

Network Security

We employ a sophisticated approach to ensure your data remains protected in transit and at rest. Our layered perimeter defenses, combined with advanced threat detection systems, secure every endpoint within the Avature cloud.

Our security gateways, protected by cutting-edge application firewalls, defend against denial-of-service attacks. We also perform automated vulnerability scans weekly to address any findings and commission biannual penetration tests for our application, mobile app and network performed by a PCI-certified third party, providing comprehensive, independent security assessments.

Strong, industry-standard encryption protocols ensure the confidentiality and integrity of data in transit.

Application Security

We built our platform with security at its core, combining the latest technology with rigorous practices to ensure that your data is secure and performance is reliable.

Authentication

We support SAML SSO and MFA to ensure only authorized access. Extra layers like IP whitelisting and hardware certificates help block threats early. Privileged users can set password rules, session timeouts, and lockout policies for added protection.


Journaling

Avature’s in-application journal provides a detailed log of user activities, including login history and attempts, record changes, workflow updates, and security or permission modifications.


Encryption

Full-disk and field-specific encryption for sensitive data delivers a secure and reliable application security experience for our customers.

Role-Based Access Control

You maintain full control over who accesses your data. We provide fine-grained access controls, allowing you to set specific permissions for each user or role. This ensures that only those who need access to sensitive data have it.


Customer Testing

Avature empowers you to conduct your own vulnerability tests on a replica of your configured instance in a secure, quarantined environment, with obfuscated data for third-party testing.


Built-in Security Testing

Every release undergoes over 10,000 tests, including checks for the OWASP Top 10 threats and comprehensive performance benchmarks, ensuring vulnerabilities are mitigated and your platform remains reliable.

Related Content

Being OFCCP Compliant with Avature

Avature helps customers efficiently meet the requirements of the U.S. Department of Labor and its Office of Federal Contract Compliance Programs (OFCCP).

Download Guide

Achieving GDPR Compliance with Avature

Read our GDPR training for recruiters guide to learn how Avature’s technical features, support, and security measures help our customers maintain and protect their candidates’ data.

Download Guide

6 Reasons to Invest in a Single Recruitment Platform

We explore the benefits of adopting a one-platform approach to talent acquisition by investing in a best-in-class recruiting suite.

View