EventsSecure.com at Black Hat USA 2026

Security, Trust, and AI Governance FAQ

This FAQ describes how Secure.com protects customer data, governs its use of artificial intelligence, and identifies security responsibility between Secure.com and its customers. It is written for security teams, privacy and legal reviewers, and procurement functions evaluating Secure.com.

Secure.com is an AI-native Security Lifecycle Management platform. Its Digital Security Teammates carry out security work across detection and response, vulnerability management, and compliance operations. Because those Teammates act inside customer systems rather than only reporting on them, this document gives particular attention to how their access is scoped, how their actions are governed, and where human authority is preserved.

Answers here summarize Secure.com’s practices. Contractual commitments are set out in the customer agreement, the Data Processing Agreement, and applicable service documentation. Where those documents and this FAQ differ, those documents govern.

  • SOC 2 Type 2

    All five trust services categories — unqualified opinion, no exceptions

  • ISO/IEC 27001

    Certified, scope per Statement of Applicability

  • Data residency

    AWS Frankfurt (eu-central-1) or N. Virginia (us-east-1)

  • No model training

    Customer data is never used to train foundation models

  • 99.89% uptime

    RTO 3 hours · RPO 12 hours

  • 36-hour notification

    Incident notification aligned with GDPR timeframes

Frequently Asked Questions

1Data Collection, Processing, and Retention

2Data Residency, Sovereignty, and Deployment

3Tenant Isolation and Access Controls

4AI Model Usage, Privacy, and Isolation

5AI Agent Security

6Human Oversight and Governance

7Security Architecture and Platform Protection

8Personnel and Insider Risk

9Certifications, Assessments, and Compliance

10Incident Response and Responsibility

11Availability, Resilience, and Business Continuity

12Subprocessors and Third Parties

14Customer Security Responsibilities

15Product Assurance and Responsible AI