Trust Center Compliance Documents Updates
About Cequence
Cequence Security is on a mission to protect today’s hyper-connected organizations from attacks, abuse, fraud, data loss, and non-compliance across the API, web, and mobile applications connecting their employees, customers, partners, and suppliers. What We Do Cequence Security makes industry-leading API security and bot management software with a flexible deployment model supporting SaaS, on-premises, and hybrid installations. Cequence is the only solution that delivers Unified API Protection (UAP), uniting discovery, compliance, and protection across all internal and external APIs to defend organizations and their applications against attacks, business logic abuse, and fraud. Cequence solutions scale to handle the most demanding government, Fortune and Global 500 organizations, securing more than 8 billion daily API interactions and protecting more than 3 billion user accounts.
Compliance Request Access to Private Documents
3 Results
Documents that summarizes our adherence to laws, regulations, and internal policies, helping ensure transparency, risk management and legal conformity
SOC2 Type2
Updated 2025
PCIDSS v4.0.1
Updated 2025
ISO 27001
Updated 2025
Documents
Request Access to Private Documents
Responsible Disclosure Policy
Cookies
PCI DSS AoC
SOC 2 Type II Mgmt Assertion
SOC 2 TypeII Assertion of Mgmt
Letter of Audit Completion
Protecting Sensitive Data with Cequence UAP Masking
Vulnerability Management and Patching Policy
Security Incident Response Policy and Procedures
Security Awareness and Training Policy
Secure SDLC Policy and Standard
Risk Management Policy
Incidence Response Procedures and Guidelines
Encryption Policy
Disaster Recovery Plan and Standards
Change Management Policy
Business Continuity Policy
Authentication and Access Control Standards
Information Security Policy
Acceptable Use Policy
Data Privacy
Responsible Disclosure Policy
Personal Information Collected
Data Encryption and Security
View More
Reports
PCI DSS AoC
SOC 2 Type II Mgmt Assertion
SOC 2 TypeII Assertion of Mgmt
View More
Access Control
Password Security
Logging
Data Access
Endpoint Security
Threat Detection
Mobile Device Management
Endpoint Detection and Response
View More
Product Security
Protecting Sensitive Data with Cequence UAP Masking
SSO Support
Role-Based Access Control
View More
Policies
Vulnerability Management and Patching Policy
Security Incident Response Policy and Procedures
Security Awareness and Training Policy
View More
Risk Profile
HostingMajor CSP
Recovery Point Objective1-24 hours
Recovery Time Objective1-24 hours
Trust Center Updates
PCI DSS v4.0.1 Compliance Achieved Published at

We are pleased to announce that Cequence Security is now compliant with PCI DSS version 4.0.1 as of July 15, 2025. This certification demonstrates our continued commitment to maintaining the highest standards in payment card data security. The updated version reflects enhanced requirements around authentication, encryption, and ongoing risk management. Our environment has been assessed by an independent Qualified Security Assessor (QSA), and we remain dedicated to protecting cardholder data through rigorous security practices and continuous improvement.

Cequence has attained SOC 2 TYPE 2 Published at

We are proud and excited to announce that the Cequence has achieved SOC 2 Type 2 compliance.

SOC 2 Type 2 compliance requires an ongoing commitment to security and privacy practices and demonstrates our dedication to protecting our customers' data. We have uploaded the SOC 2 Type 2 report to our trust portal for our customers' reference.

ISO 27001 Published at

Cequence has achieved ISO 27001 certification for the information security management system in support of its Software-as-a-Service (SaaS). ISO 27001 is the international standard for establishing, implementing, maintaining, and continually improving an information security management system within the context of the organization. To receive this certification, Cequence Security demostrated a strong understanding of the risks unique to its business. ISO 27001 certification gives our customers peace of mind that our policies, processes, and standards fulfill the stringent security and compliance criteria for protecting customer data.


PCI DSS 3.2 Published at

The PCI DSS is an information security standard created by the major credit card companies and managed by the PCI Standards Security council. The PCI DSS sets a baseline of technical and operational requirements needed to protect credit card account information that is shared across systems including card number, verification number, and expiration date. The Cequence systems do not process or store credit card data. However, incoming cardholder data may be decrypted and forwarded on to the client application if it is in the data stream for the protected website.


Trust Center launch Published at

Introducing the Cequence Trust Center, our latest initiative for openness in security practices and developments. Here, we will consistently update you on our measures to secure your data, our responses to emerging threats, and our compliance with regulatory standards. Have confidence in our unwavering commitment to the protection of your information and remain updated with the newest advancements in data security.


Have questions or found a bug? Click Contact Support to reach out to us!
Powered by