Security · data handling · compliance

Procurement-grade security, by design.

JobRoute handles workforce data at the intersection of HR, legal, and individual privacy. We are building to the standards our enterprise and public sector customers already hold internally, and we're honest about what's in place today versus what's on the audit calendar. No security theater, no hand-waving.

Data encryption
TLS 1.3 + AES-256
In transit and at rest
Live
Tenant isolation
Logical, per-customer
Physical VPC isolation for Partner tier
Live
Model training
Zero customer-data training
Contractually guaranteed
Live
SOC 2 Type II
Audit in Q3 2026
Third-party advisory engaged
Roadmap
01 Controls in place

Security controls, live today.

A

SSO · SAML 2.0 · OIDC

Single sign-on via Okta, Azure AD, Google Workspace, Ping, and any SAML 2.0 or OIDC-compliant identity provider. SCIM provisioning for user lifecycle automation.

B

Role-based access control

Granular RBAC with admin, analyst, manager, and viewer roles. Enterprise tier supports custom roles, row-level data filters, and just-in-time access elevation with manager approval.

C

Immutable audit logs

Every data access, export, configuration change, and integration action is logged with user, timestamp, and action detail. Logs are immutable, retained for the contract term, and exportable via API.

D

Encryption everywhere

TLS 1.3 in transit, AES-256 at rest. Customer-managed encryption keys (CMEK) available on Partner tier via Azure Key Vault.

E

Tenant isolation by design

Every customer runs in a logically isolated tenant. Partner-tier deployments include dedicated VPCs, isolated databases, and can run in the customer's own cloud account under a BYOC model.

F

Backup and recovery

Point-in-time recovery for the last 30 days. Daily encrypted backups to a separate region. Quarterly disaster recovery drills with documented RTO of 4 hours and RPO of 1 hour.

02 · Data handling

Five commitments we put in writing.

These aren't marketing promises. They are contractual terms in every MSA we sign. If we cannot honor one of them for your use case, we tell you before the contract is drafted.

Most of these we inherit from a decade of enterprise consulting work at QueryNow, where getting HR data handling wrong was never an option.

1
Your data is not used to train our models.
Workforce data processed through JobRoute is used only to serve your tenant. No customer data is ever used to train, fine-tune, or improve models available to any other customer or to our own foundation models.
2
You own your data. We process it.
Contractually, you are the data controller. We are the data processor. Data can be fully exported at any time, and is deleted within 30 days of contract termination (or immediately upon written request).
3
No third-party data sharing, ever.
We do not sell, share, or syndicate customer workforce data to any third party, for any reason. Aggregate benchmarking only happens with explicit opt-in and always as anonymized, statistically de-identified counts.
4
AI providers are named and contractually bound.
JobRoute uses Anthropic Claude and OpenAI models via enterprise API agreements with zero-retention terms. The exact sub-processor list is published and updated with 30 days notice before changes.
5
Breach notification within 72 hours.
Any material security incident affecting your data triggers notification within 72 hours, per GDPR-aligned standard, with initial facts and an incident lead contact. Full post-incident review within 30 days.
03 Compliance

What we can hand to procurement today.

Certification

SOC 2 Type II

Target: Q3 2026 Type II audit

SOC 2 Type II preparation underway with third-party advisory. Security questionnaires available pre-audit on request under MNDA.

Regulatory

GDPR & EU AI Act

Ready · EU data residency available

Data processing addendum available pre-contract. Standard Contractual Clauses for international transfer. EU data residency (Azure Germany West Central) available for enterprise tier. EU AI Act high-risk system controls documented.

Regulatory

HIPAA

Deployment-specific · BAA available on request

For healthcare and life sciences customers handling PHI, we support HIPAA-aligned deployment configurations and sign Business Associate Agreements on a case-by-case basis for Partner-tier engagements.

Your data stays where it needs to stay.

For EU customers, public sector deployments, and regulated industries, data residency is not a preference, it's a requirement. JobRoute runs on Azure in two regions today, with sovereign deployment available for Partner tier.

Cross-region replication, backups, and disaster recovery all respect the primary region contract. Nothing leaves the region by default.

🇺🇸 United States
Azure East US (primary)
Azure West US 2 (DR)
Live
🇪🇺 European Union
Azure Germany West Central / Frankfurt (primary)
Azure North Europe / Ireland (DR)
Live
🇬🇧 United Kingdom
Azure UK South (London)
Q3 2026
🇨🇦 Canada · 🇦🇺 Australia
Azure Canada Central / Azure Australia East
On request for Partner tier
By request
04 Incident response

When something goes wrong, this is how we respond.

01

Detect

24/7 monitoring via automated alerting, log analysis, and external reporting channels (security@jobroute.ai).

Always-on
02

Triage

Security lead classifies severity, assembles response team, contains the incident, and begins evidence preservation.

Within 1 hour
03

Notify

Affected customers notified with initial facts, scope estimate, and incident lead contact. Regulators notified per jurisdiction.

Within 72 hours
04

Resolve + review

Root cause analysis, remediation, public-facing incident report where appropriate, and control updates to prevent recurrence.

Review within 30 days

Need something we didn't publish here?

For procurement, security review, architecture documentation, sub-processor lists, penetration test summaries, or specific compliance questionnaires (CAIQ, SIG, VSAQ), email security@jobroute.ai or request through your account contact. We respond within two business days.