Security & trust

Controls a security reviewer can actually check.

Ambianceintel is deployed inside hospitals, housing, public facilities and monitoring operations. The security model is documented, and the roadmap is stated separately from what exists today.

Platform controls

In place today

Encrypted device communication

Traffic between sensing nodes, edge and platform is encrypted in transit.

Secure onboarding

Devices are enrolled through a controlled provisioning process tied to a tenant.

Device certificates

Per-device identity so a node cannot be silently substituted.

Role-based access control

Access scoped by role across tenants, sites and zones.

Multi-factor authentication

Available for platform accounts, enforceable per tenant.

Audit logs

Access and configuration changes are recorded and exportable.

API security

Scoped credentials, least-privilege tokens and rate limiting on integration endpoints.

Tenant isolation

Customer and partner data is separated, including in multi-tenant partner deployments.

Data encryption at rest

Stored event data is encrypted.

Roadmap and options

Stated plainly

We do not claim certifications we do not hold. Where something is a roadmap item or a deployment option, it is labelled as one.

Signed firmware

Signed firmware and verified update paths for sensing nodes are on the platform roadmap.

SOC 2

SOC 2 is a roadmap objective. Ambianceintel does not currently hold a SOC 2 report and does not claim one.

ISO 27001

ISO 27001 certification is a roadmap objective, not a current certification.

Canadian data residency

Canadian-hosted deployment is available as a deployment option for customers who require it.