LEGAL

Security

Last updated: January 2026

Security is foundational to the Impresa.ai platform. We protect critical utility data with defense-in-depth controls spanning encryption, access governance, monitoring, and compliance.

Security Program

Our program is built around confidentiality, integrity, and availability, with policies, training, and controls reviewed regularly and aligned to recognized industry frameworks.

Data Encryption

Data is encrypted in transit (TLS) and at rest. Encryption keys are managed with strict access controls, separation of duties, and regular rotation.

Access Control

Role-based access control, least-privilege provisioning, and multi-factor authentication govern access to systems and customer data, with tenant isolation enforced across every layer.

Network & Infrastructure Security

Cloud-native architecture with segmented networks, hardened configurations, vulnerability management, and application and infrastructure security controls.

Monitoring & Incident Response

Continuous monitoring, logging, and alerting support rapid detection and response. We maintain documented incident-response procedures and tamper-evident audit trails.

Compliance & Certifications

Our controls align with SOC 2 and, for grid-facing deployments, NERC CIP considerations. We support customer audits and provide security documentation on request.

Business Continuity & Recovery

Backup, recovery, and business-continuity practices are designed to protect data integrity and availability, with recovery objectives defined per deployment.

Responsible Disclosure

We welcome reports of potential vulnerabilities. Please contact our security team so we can investigate and remediate promptly.

Contact Us

For security inquiries, contact us at contact_us@impresa.ai or 47000 Warm Springs Blvd., Ste 1-251, Fremont, CA 94539, USA.



This document is a template stub for the redesigned site and should be reviewed and finalized by legal counsel before publication.