Encryption
TLS 1.3 in transit and AES-256 at rest. Always on, nothing to configure.
AI agents
Built in
WatchSee agents run a role from intake to shortlist.Take the product tour For employers
Learn
Your candidates trust you with their data. Here is exactly how we protect it, so your IT, legal and procurement teams can say yes quickly.
SOC 2Controls mapped to SOC 2 Type II.
GDPRBuilt for GDPR, with EU-only hosting available.
ISO 27001Controls mapped to ISO/IEC 27001.Candidate data is used only for your own hiring. It is never used to train or fine-tune shared AI models.
You choose where it lives, including EU-only hosting, and you can export or delete it whenever you need to.
TLS 1.3 in transit and AES-256 at rest. Always on, nothing to configure.
SSO with SAML 2.0, SCIM provisioning, MFA and role-based permissions. IP allow-listing if you need it.
Central logging with 24/7 alerting. Every build is scanned and third parties test us independently.
Set retention windows, mask personal fields, export audit logs and rotate webhook secrets yourself.
Speed means nothing if you cannot explain a decision. Every candidate for a role gets the same questions and the same scorecard. Every score comes with the evidence behind it. Candidates are told when they are speaking with an AI, and every interaction is recorded with a full transcript.
Priya S.ICU Nurse · Austin4.6“I ran the night handover for a 24-bed unit and trained four new hires on it.”
Leadership · Strong: gives a specific example with outcomeWe follow a documented process: detect, contain, fix, recover and review. If an incident affects personal data, we tell you without undue delay and within 72 hours of confirming it.
Our infrastructure runs on AWS. Calls, email and SMS run through providers such as Twilio, and AI voice runs through providers such as ElevenLabs when enabled. The full sub-processor list is available on request.
No. Your data powers your own hiring workflows only. It is never used to train or fine-tune shared AI models.
Our security controls are mapped to SOC 2 and ISO 27001, with encryption in transit and at rest. Talk to us for the details your security review needs.
Data is hosted on AWS in the Mumbai and Frankfurt regions. EU-only hosting is available if you need your data to stay in the EU.
Yes. SAML 2.0 SSO with SCIM provisioning, MFA, role-based permissions and IP allow-listing if you need it.
TLS 1.3 in transit and AES-256 at rest, central logging with 24/7 alerting, scans on every build and independent third-party penetration tests. You can set retention windows, mask personal fields and export or delete data.
We follow a documented process: detect, contain, fix, recover and review. If an incident affects personal data, we tell you without undue delay and within 72 hours.
See our vulnerability disclosure page or email support@scrini.ai with "Security" in the subject line.