Brivo Security
and Compliance
Learn how Brivo secures our products, service and data

Brivo Security
and Compliance
Learn how Brivo secures our products, service and data
Your Security is
Our Top Priority
The Brivo Security Whitepaper details our practices and controls in maintaining your facility’s security and data privacy.
Your Security is Our
Top Priority
The Brivo Security Whitepaper details our practices and controls in maintaining your facility’s security and data privacy.
Certifications and Compliance
Brivo is certified to comply with industry standards and regulations governing product security, reliability, and availability.
SOC 2 Type II
Brivo is certified to AICPA SOC 2 Type II, validating our commitment to protect and secure client data. Available under NDA, contact your account manager or submit a request
ISO/IEC 27001
Brivo is an ISO/IEC 27001:2013 certified provider, receiving third-party accreditation by an ANAB-accredited certification body.
CSA STAR Level 1
Our systems are validated annually to the principles of transparency, rigorous auditing and harmonization of standards in the Cloud Controls Matrix (CCM).

GDPR
For data privacy of EU citizens, Brivo meets GDPR obligations, and can provide input for a data privacy impact assessment (DPIA) with use of Brivo services.
CCPA/CPRA
Brivo can meet California privacy obligations on how businesses collect, process, handle and store personal information from California consumers.
PCI-DSS Compliance
Brivo is compliant with the PCI Data Security Standard (DSS), requiring security controls and processes for transacting payment card data.
HIPAA
For processing electronically protected health information (e-PHI), Brivo can support businesses in meeting HIPAA-compliant security standards.
FERPA
Brivo may be part of a FERPA compliant solution for its products used to safeguard student data and PII.
NDAA
Components in Brivo hardware and systems meet National Defense Authorization Act (NDAA) requirements restricting use from certain foreign vendors.
WCAG
Brivo enhances digital assets to deliver accessible experiences, guided by the Web Content Accessibility Guidelines.
Responsible Disclosure
For security researchers who discover security vulnerabilities, we encourage you to disclose to Brivo in a responsible manner.
System Status
To provide high availability, Brivo Access is run on highly available, fault-tolerant infrastructure. We provide the latest information on service availability, including any planned or unplanned downtime publicly on our status page
System Status
To provide high availability, Brivo Access is run on highly available, fault-tolerant infrastructure. We provide the latest information on service availability, including any planned or unplanned downtime publicly on our status page
Submit a Request
Request a copy of our SOC2 compliance report and learn more about how to manage security for Brivo solutions