Compliance

Committed to the highest standards of regulatory compliance and ethical business practices.

Last updated: January 2025

1. Introduction

At ORIS HUB™, compliance is not just a requirement—it is a core component of our culture and operations. We are dedicated to adhering to all applicable laws, regulations, and industry standards in every jurisdiction where we operate.

This Compliance page outlines our commitment to regulatory adherence, data protection, and ethical conduct, ensuring that our customers and partners can trust us with their most critical assets.

2. Global Standards

We align our practices with leading international frameworks to ensure a robust compliance posture:

  • ISO/IEC 27001: Information security management system standards.
  • ISO/IEC 27701: Privacy information management system standards.
  • SOC 2 Type II: Requirements for service organizations regarding security, availability, and confidentiality.

3. Data Protection

We adhere to strict data protection regulations to safeguard user privacy:

  • GDPR (General Data Protection Regulation): We are fully compliant with EU data protection laws, facilitating user rights and lawful data processing.
  • CCPA (California Consumer Privacy Act): We respect the privacy rights of California residents, including the right to know and delete personal information.
  • HIPAA: For healthcare-related services, we maintain compliance with the Health Insurance Portability and Accountability Act.

4. Audits & Certifications

To validate our compliance efforts, we undergo regular third-party audits. Reports and certificates are available to customers upon request or through our Trust Center.

  • Annual SOC 2 Type II audit
  • Annual ISO 27001 surveillance audit
  • Regular penetration testing by independent security firms

5. Industry Compliance

We monitor and adapt to industry-specific regulations to ensure our services remain compliant across various sectors, including finance, healthcare, and education.

6. Internal Policies

Compliance starts from within. Our internal policies govern employee conduct, data handling, and security practices:

  • Code of Conduct & Ethics
  • Anti-Bribery & Corruption Policy
  • Whistleblower Policy
  • Acceptable Use Policy

7. Reporting Model Violations

We encourage the reporting of identified or suspected non-compliance. All reports are treated confidentially and investigated thoroughly.

You can report violations anonymously via our dedicated compliance hotline or email.

8. Contact Compliance Team

For questions regarding our compliance program, certifications, or regulatory adherence, please contact our Compliance Officer:

ORIS HUB™

Email: compliance@orishub.com

Website: orishub.com