Security and Compliance at ProcessPro

Your processes and documents contain information your organisation relies on. ProcessPro combines independent assurance, controlled access and cloud infrastructure to help protect that information and keep it available to your team.

SOC 2 Type 2

ProcessPro has completed an independent SOC 2 Type 2 examination by Sensiba. It assessed the design and operating effectiveness of controls for our Software as a Service System against the Security, Availability and Confidentiality Trust Services Criteria.

The report covers 1 June 2025 to 31 May 2026 and was issued on 27 July 2026. You can request access through our Trust Center to support your security review.

Cloud hosting and data protection

ProcessPro runs on Microsoft Azure. We encrypt stored customer data and use encrypted communications. Firewalls, security monitoring and vulnerability management help us identify and address risks to the service.

Secure access

Single sign-on lets your team access ProcessPro with their existing organisation credentials, with support for Microsoft Entra, Okta and ADFS. Internally, we limit access to systems and data according to job responsibilities, review permissions and remove access when it is no longer needed.

Learn about single sign-on

Privacy and AI

Our Privacy Policy explains how we collect and use personal information and the rights available to you. Our AI Terms Policy explains data use and your responsibilities when using AI features.

Read our Privacy Policy | Read our AI Terms Policy

Review our security information

Assessing ProcessPro for your organisation? Visit our Trust Center to request access to our SOC 2 Type 2 report and supporting security information. Use these materials to help your IT, security and procurement teams assess ProcessPro against your requirements.

Visit our Trust Center

Backups and service continuity

We perform and monitor daily backups of production data. Our Azure infrastructure uses multiple availability zones to support service continuity. Documented business continuity and disaster recovery plans guide our response to disruption, with tests conducted annually.