Brivo Security
and Compliance

Learn how Brivo secures our products, service and data

"
Trust Compliance

Brivo Security
and Compliance

Learn how Brivo secures our products, service and data

"

Your Security is
Our Top Priority

The Brivo Security Whitepaper details our practices and controls in maintaining your facility’s security and data privacy.

Your Security is Our
Top Priority

The Brivo Security Whitepaper details our practices and controls in maintaining your facility’s security and data privacy.

Certifications and Compliance

Brivo is certified to comply with industry standards and regulations governing product security, reliability, and availability.

SOC 2 Type II

SOC 2 Type II

Brivo is certified to AICPA SOC 2 Type II, validating our commitment to protect and secure client data. Available under NDA, contact your account manager or submit a request

ISO-IEC 27001

ISO/IEC 27001

Brivo is an ISO/IEC 27001:2013 certified provider, receiving third-party accreditation by an ANAB-accredited certification body.

Star Level 1

CSA STAR Level 1

Our systems are validated annually to the principles of transparency, rigorous auditing and harmonization of standards in the Cloud Controls Matrix (CCM).

GDPR

GDPR

For data privacy of EU citizens, Brivo meets GDPR obligations, and can provide input for a data privacy impact assessment (DPIA) with use of Brivo services.

CCPA-CPRA

CCPA/CPRA

Brivo can meet California privacy obligations on how businesses collect, process, handle and store personal information from California consumers.

PCI-DSS

PCI-DSS Compliance

Brivo is compliant with the PCI Data Security Standard (DSS), requiring security controls and processes for transacting payment card data.

HIPAA

HIPAA

For processing electronically protected health information (e-PHI), Brivo can support businesses in meeting HIPAA-compliant security standards.

FERPA

FERPA

Brivo may be part of a FERPA compliant solution for its products used to safeguard student data and PII.

NDAA

NDAA

Components in Brivo hardware and systems meet National Defense Authorization Act (NDAA) requirements restricting use from certain foreign vendors.

System Status

To provide high availability, Brivo Access is run on highly available, fault-tolerant infrastructure.  We provide the latest information on service availability, including any planned or unplanned downtime publicly on our status page

System Status

To provide high availability, Brivo Access is run on highly available, fault-tolerant infrastructure.  We provide the latest information on service availability, including any planned or unplanned downtime publicly on our status page

Submit a Request

Request a copy of our SOC2 compliance report and learn more about how to manage security for Brivo solutions