Trust Center
Documentation of our compliance against global standards including certifications, attestations, audit reports, security and policies.
Last updated: April 2026
Security
- AWS ArchitectureDownload ↓
- Acuna Web Application Penetration TestingDownload ↓
- Vulnerability ManagementDownload ↓
Policies
- Business ContinuityDownload ↓
- Incident Management ProcedureDownload ↓
- Information Security CharterDownload ↓
Continuous Monitoring
App Security
- Annual Penetration Test
- Code Review Process
- Employee Disclosure Process
- Quarterly Vulnerability Scan
- Responsible Disclosure (Bug Bounty)
- Software Development Lifecycle
- Vulnerability Management
- Web Application Firewall
Data Security
- Daily Database Backups
- Data is Encrypted at Rest
- Security Policies
- SSL/TLS Enforced
- System Access Control Policy
Infrastructure Security
- Cloud Data Storage Restricted
- Encryption of Web-Based Admin Access
- Multiple Availability Zones
- Password Policy
- Security Patches Automatically Applied
Network Security
- Denial of Public SSH
- Firewalls
- Logging/Monitoring
- Malware Detection Software Installed
Organization Security
- Acceptable Use Policy
- Code of Conduct
- Disaster Recovery Plan
- Incident Response Plan
- Incident Response Team
- Security Training
Product Security
- Databases Monitored and Alarmed
- Hard-Disk Encryption
- MFA on Accounts
- Terms of Service
Services List
Acuna positions itself as an all-in-one scalable solution for third-party risk management, with strong emphasis on compliance, automation, and expert support.
Third-Party Risk Management (TPRM) Platform
Cloud-based platform for end-to-end supplier and third-party risk management, with a centralized interface designed for usability and scale.
Expert Advisory Services
Access to qualified advisors across procurement, cybersecurity, and compliance to align TPRM programs with regulations and standards.
Managed Services
Execution support for assessments, compliance checks, and monitoring, including PRO evaluations and optional questionnaire customization.
Vendor/Third-Party Assessments
Supplier risk evaluations covering compliance and operational reliability, run by customers or with Acuna expert support.
Continuous Monitoring
Ongoing surveillance with automated alerts, periodic audits, and real-time visibility into emerging supplier risk.
Compliance Management
Workflows to keep supplier activities aligned to applicable regulations and industry standards.
Customized Questionnaires
Tailored questionnaires to gather required evidence and data for business, contractual, and regulatory requirements.
Reporting & Analytics
Risk dashboards, assessment findings, and exportable reporting for audit trails and supplier performance tracking.
Supplier Tiering
Business-impact classification to prioritize risk treatment and allocate resources based on supplier criticality.
Automated Risk Assessments
Automation to evaluate supplier risk profiles and flag potential issues before business impact.
Scalability
Support for organizations from small teams to enterprises with complex global supply chains.
On-Demand Pro Evaluations
Expert-led evaluations available as needed (tokens model), allowing flexible scaling without long-term commitments.
Industry Coverage
Designed for finance, healthcare, manufacturing, IT, retail, logistics, insurance, and other sectors.
No Long-Term Contracts
Flexible subscription model with transparent pricing and optional add-on services.
Upcoming Features
- Cybersecurity Supplier Risk Monitoring (coming soon)
- Financial Score for Customers' Suppliers (coming soon)
- Integration Capabilities via APIs, Zapier, and SSO (some features coming soon)
Subprocessors
Acuna and Acuna Platform list of subprocessors that handle personally identifiable data.
Acuna
Microsoft Azure
Cloud computing services including Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS) offerings.
Data location: EU
Zoho
Multichannel marketing automation software with features designed to ease the marketing process and generate sales-ready leads.
Data location: EU
Mailchimp
Email marketing and transactional email services.
Data location: US
Acuna Platform
Amazon Web Services
Cloud infrastructure and security.
Data location: Switzerland & EU
Dun & Bradstreet
Global business decisioning data and analytics used for risk and due diligence workflows.
Data location: US
Google Analytics
Web analytics service used to track and report website traffic and user behavior.
Data location: US
Productfruits
Digital adoption tooling used to improve user onboarding and in-app guidance.
Data location: US / EU
Sentry
Application monitoring used to detect performance issues and runtime errors.
Data location: US
Stripe
Billing, subscription, and invoicing services.
Data location: US
Zapier
Workflow automation service to connect tools and orchestrate integrations without code.
Data location: US
Need additional documentation? info@abilene-group.ch.