Security & trust
Controls a security reviewer can actually check.
Ambianceintel is deployed inside hospitals, housing, public facilities and monitoring operations. The security model is documented, and the roadmap is stated separately from what exists today.
Platform controls
In place today
Encrypted device communication
Traffic between sensing nodes, edge and platform is encrypted in transit.
Secure onboarding
Devices are enrolled through a controlled provisioning process tied to a tenant.
Device certificates
Per-device identity so a node cannot be silently substituted.
Role-based access control
Access scoped by role across tenants, sites and zones.
Multi-factor authentication
Available for platform accounts, enforceable per tenant.
Audit logs
Access and configuration changes are recorded and exportable.
API security
Scoped credentials, least-privilege tokens and rate limiting on integration endpoints.
Tenant isolation
Customer and partner data is separated, including in multi-tenant partner deployments.
Data encryption at rest
Stored event data is encrypted.
Roadmap and options
Stated plainly
We do not claim certifications we do not hold. Where something is a roadmap item or a deployment option, it is labelled as one.
Signed firmware
Signed firmware and verified update paths for sensing nodes are on the platform roadmap.
SOC 2
SOC 2 is a roadmap objective. Ambianceintel does not currently hold a SOC 2 report and does not claim one.
ISO 27001
ISO 27001 certification is a roadmap objective, not a current certification.
Canadian data residency
Canadian-hosted deployment is available as a deployment option for customers who require it.