Trust Center
Security’s in our DNA
Our multi-tiered security framework is built on enterprise-grade standards like ISO 27001 and SOC 2.
Enterprise-grade security
- Hosted on secure, industry-leading cloud infrastructure
- Strong encryption for all data in transit and at rest
- Strict access controls and continuous monitoring
- Regular independent penetration tests and security reviews
Data encryption
- In transit: TLS 1.2+
- At rest: AES-256
- Key management aligned with cloud provider best practices
- Regular key rotation for sensitive services
Globally recognized compliance
Lusha meets top international security standards, including:
- SOC 2 Type II
- ISO 27001, ISO 27701, ISO 27017, ISO 31700, ISO 42001
- Compliance with GDPR, CCPA, and global data protection laws
Full certification reports are available upon request.
Built-in product security
Lusha provides robust in-product features that keep your organization safe:
- SSO/SAML
- Role-Based Access Control (RBAC)
- Audit Logs
- Secure API authentication
Operational reliability you can trust
- High-availability infrastructure
- Redundant systems
- Public service status and uptime monitoring
- Transparent incident communication
Security documentation on demand
We provide a full set of security materials for evaluations and vendor assessments, including:
- SOC 2 reports
- Penetration test summaries
- Security whitepapers
- Sub-processor lists