Sophus, a SaaS company offering supply chain designing and optimization solutions, recognizes that the confidentiality, integrity, and availability of the information and data we create, maintain, and host are crucial to our business success and our partners’ privacy.

As a service provider, we emphasize transparency in our security practices, tools, resources, and responsibilities, ensuring that our customers trust us as a reliable provider.

This Security Portal provides an overview of our approach to identifying and mitigating risks, implementing best practices, and offering insights into various security measures. The portal will be regularly updated.

Website: sophus.ai                  Privacy Policy: View Privacy Policy                  Founded: 2021                  Contact Us: Reach Out

Compliances

ISO 27001

√  Compliant

SOC 2

… In Progress

GDPR

√  Compliant

Controls

Product Security (7)

• Production System User Review

• Awareness for Incidents

• Vulnerability Remediation Process

View 4 more controls  →

Network Security (9)

• Impact Analysis

• Network Connection Restrictions

• External System Connections

View 6 more controls  →

Corporate Security (8)

• Code of Business Conduct

• Organizational Structure & Gov…

• Clear Roles & Responsibilities

View 4 more controls  →

Data Security (16)

• Identity Validation

• Termination of Employment

• Production Database Access  …

View 13 more controls  →

Application Security (7)

• Privacy Notice Accessibility

• Secure System Modifications

• Change Approval Procedures

View 4 more controls  →

Security and Compliance Resources

Policies

Acceptable Usage Policy

Defines the appropriate use of Sophus systems, tools, equipment, and data to safeguard critical information.

Access Control Policy

Ensures that access to Sophus assets is managed based on business and security requirements.

Business Continuity Policy

Provides a framework to maintain operational continuity and facilitate recovery in case of disruptions.

Certifications & Reports

ISO 27001 Certificate

ISO 27001 certification issued by an independent third-party auditor to demonstrate compliance with information security best practices.

SOC 2 Reports

In Progress

Vulnerability Assessment Report

Provides insights into security vulnerabilities identified during periodic assessments and recommended remediation steps.

Technical Documentation

Network Diagram

Refer to the attached network architecture document for an overview of network design, security controls, and segmentation.

Product Architecture

Documents the high-level system design, data flow, and security measures incorporated into Sophus products to ensure security and compliance.

Privacy Policy

Refer to the Privacy Policy available online for details on how Sophus manages and protects user data.

View document →