Security is foundational to the Impresa.ai platform. We protect critical utility data with defense-in-depth controls spanning encryption, access governance, monitoring, and compliance.
Security Program
Our program is built around confidentiality, integrity, and availability, with policies, training, and controls reviewed regularly and aligned to recognized industry frameworks.
Data Encryption
Data is encrypted in transit (TLS) and at rest. Encryption keys are managed with strict access controls, separation of duties, and regular rotation.
Access Control
Role-based access control, least-privilege provisioning, and multi-factor authentication govern access to systems and customer data, with tenant isolation enforced across every layer.
Network & Infrastructure Security
Cloud-native architecture with segmented networks, hardened configurations, vulnerability management, and application and infrastructure security controls.
Monitoring & Incident Response
Continuous monitoring, logging, and alerting support rapid detection and response. We maintain documented incident-response procedures and tamper-evident audit trails.
Compliance & Certifications
Our controls align with SOC 2 and, for grid-facing deployments, NERC CIP considerations. We support customer audits and provide security documentation on request.
Business Continuity & Recovery
Backup, recovery, and business-continuity practices are designed to protect data integrity and availability, with recovery objectives defined per deployment.
Responsible Disclosure
We welcome reports of potential vulnerabilities. Please contact our security team so we can investigate and remediate promptly.
Contact Us
For security inquiries, contact us at contact_us@impresa.ai or 47000 Warm Springs Blvd., Ste 1-251, Fremont, CA 94539, USA.