Meet @O.

Online Workshop on 14 October: Survive The AI EraOnline Workshop: Survive The AI EraRegister
Free 30-min AI audit

Data security

Ogment is built for firms that owe their clients confidentiality. Here is what protects your clients’ data, and where to check it.

Our DPA in brief

Summary of our data processing agreement

  • Swiss data protection law

    Full compliance with the Federal Act on Data Protection (FADP) and its Ordinance (DPO). DPA and records of processing activities (ROPA) available on request.

  • Audit

    SOC 2 Type II. Last audit by an independent auditor on 12 August 2026. Details of the controls in our trust center.

  • Data hosting

    AWS, Zurich, Switzerland. Customer data and its backups are stored in Switzerland.

  • AI processing

    On servers located in Europe (EU/EEA), through EU endpoints only.

  • Data retention

    Our contracts with LLM providers impose zero data retention and forbid every model provider from using the data for training.

  • Encryption

    In transit (TLS 1.2 or later) and at rest (AES-256 or equivalent).

  • Security testing

    Annual penetration test by an independent firm, quarterly vulnerability scans, and critical vulnerabilities fixed within 7 days.

  • Access control

    Multi-factor authentication is mandatory. Our personnel’s access is role-based, limited and logged.

  • Human approval

    The agent writes to your systems only once a user approves, or where you have switched on autopilot for a workflow. Every agent action is logged.

Documents

Read the fine print.

Teo BorschbergCEO, Ogment

Book your free 30-min AI audit

  • Where your team’s hours go, mandate by mandate
  • Which workflows an AI agent can take over first
  • A clear AI ROI estimate for your firm
Company size