Security & Compliance
1. SOC 2 Type II Certification
ARCAISYS PRIVATE LIMITED undergoes annual SOC 2 Type II audits conducted by independent certified public accountants. The audit validates that our security controls, platform telemetry sync operations, and organizational procedures satisfy Trust Services Criteria defined by the AICPA.
2. ISO/IEC 27001 Compliance
Our Information Security Management System (ISMS) is aligned with the ISO/IEC 27001:2022 framework. We enforce strict internal security directives, logical network separation, identity access management controls, and physical access limits for operations personnel.
3. Data Encryption Standards
SightQC implements industry-standard cryptographic primitives across all platform data streams:
- In Transit: All communication between edge cameras, local IoT controllers, and cloud servers is encrypted using TLS 1.3.
- At Rest: Raw image logs, defect tracking tables, and custom model weights are encrypted inside AWS S3 buckets and RDS systems using AES-256 with AWS Key Management Service (KMS) customer-managed keys.
4. AWS ap-south-1 Data Residency
To guarantee data security and national data protection statutory compliance, all SightQC database and computing resources reside exclusively inside the AWS Mumbai region (ap-south-1).
5. Penetration Testing & Vulnerability Disclosures
We conduct independent third-party penetration testing on our web console and API endpoints bi-annually. Vulnerability disclosure programs are active. For security issue reports or to request our latest SOC 2 Type II audit report, please email security@arcaisystech.com.