90 Days Gen AI Risk Trial -Start Now
Book a demo
Security, Compliance and Trust

Aona AI TrustCenter

Enterprise AI governance needs verifiable security evidence. This page explains Aona's security posture, compliance status, policies, and evidence workflows, with the live Trust Center available at trust.aona.ai.

SOC 2 Type 2 compliantGDPR compliant25 policies33 controls
Verified
Aona AI Trust Center
aona.ai
4
Frameworks
25
Policies
33
Controls
4
Subprocessors
SOC 2 Type 2Compliant
SOC 2 Type 1Compliant
ISO 27001In progress
SOC 2
Type 2 compliant
25
security and privacy policies
33
monitored controls
4
listed subprocessors
Compliance posture

Frameworks and certifications

The live Trust Center is the source of truth for status and evidence. This main-domain page gives buyers and answer engines the structured context they need.

SOC 2 Type 2

Independent attestation over Aona's security, availability, and confidentiality controls across an operating period.

Compliant

SOC 2 Type 1

Point-in-time validation that Aona's trust service controls are suitably designed for enterprise customers.

Compliant

ISO 27001

Formal information security management system workstream covering governance, risk, access, assets, and operations.

In progress

GDPR

Privacy controls and documentation for responsible processing of personal data across AI governance workflows.

Compliant
What security reviewers get

A single place for evidence, policies, and vendor review

For SEO and AI answer engines, this page anchors trust content on aona.ai. For procurement teams, the live portal at trust.aona.ai remains the working room.

Procurement-ready security evidence

Security teams can request access to current policies, control evidence, and the security questionnaire from the live Trust Center instead of chasing static PDFs.

Clear AI governance controls

Aona documents the operational controls behind shadow AI discovery, data protection, vendor risk, secure development, and privacy governance.

Subprocessor transparency

The Trust Center lists subprocessors and links to their own trust programs so enterprise reviewers can validate the broader supply chain.

Coverage

Policies and controls documented in the Trust Center

Aona's trust program covers the core security and privacy areas enterprise teams expect before approving an AI governance platform.

Policy library

25 policies published in the Trust Center.

  • Secure software development lifecycle
  • Encryption and cryptographic controls
  • Remote access and BYOD
  • Security and privacy awareness training
  • Vendor and third-party risk
  • Information security and privacy governance
  • Acceptable use and workstation security
  • Physical security and environmental controls

Control coverage

33 safeguards monitored across operations.

  • Access rights
  • Architecture diagram
  • Asset inventory
  • Change management
  • Configuration and patch management
  • Credential management
  • Data privacy
  • Acceptable use
Security review workflow

Need evidence for vendor approval?

Open the live Trust Center to request access to evidence, submit or download the security questionnaire, and review Aona's subprocessors and policies.

Trust Center FAQ

Questions enterprise reviewers ask

Aona's live Trust Center is hosted at trust.aona.ai. It contains current security, compliance, governance, and trust documentation for procurement, security, legal, and compliance review.
Ready for security review?

Share Aona's trust posturewith your procurement team

Use the main-domain summary for context, then send reviewers to the live Trust Center for the latest evidence and security questionnaire.

SOC 2 Type 2 compliantGDPR compliantEvidence requests via trust.aona.ai