Frequently Asked Questions

Security & Compliance

Is Salespeak SOC 2 compliant?

Yes, Salespeak is SOC 2 Type II compliant. This means our security controls are independently audited and operate effectively over time. You can request our SOC 2 Type II report and additional documentation via our Trust Center. (Source: https://salespeak.ai/security, https://salespeak.secureframetrust.com/)

What other security certifications does Salespeak have?

Salespeak adheres to ISO 27001 standards in addition to SOC 2 Type II compliance. Our security program is aligned with these industry standards and is continuously monitored and tested through third-party assessments. (Source: https://salespeak.ai/security)

How does Salespeak ensure the physical security of its infrastructure?

Salespeak is exclusively hosted on AWS, which provides robust physical data center security and environmental controls. Corporate offices require badge access, maintain video surveillance, and mandate visitor sign-ins and accompaniment. (Source: https://salespeak.ai/security)

What network security measures does Salespeak implement?

Salespeak maintains strict control over production network access using defined rules, multi-factor authentication, and encrypted connections. Intrusion detection systems are used in the production network, and advanced email filtering is implemented in the corporate network to preempt security threats. (Source: https://salespeak.ai/security)

How does Salespeak protect customer data?

Salespeak encrypts data both in transit and at rest, adhering to recognized encryption protocols. AWS destroys end-of-life disks following NIST 800-88 standards. (Source: https://salespeak.ai/security)

What is Salespeak's approach to backup and disaster recovery?

Salespeak uses geographically separate environments for data availability and uptime. Daily backups are maintained, and the Recovery Point Objective (RPO) is kept within 24 hours to ensure business continuity in case of failures. (Source: https://salespeak.ai/security)

How does Salespeak ensure application security?

Salespeak conducts both internal and external product testing, including regular vulnerability scans of source code and systems. Annual assessments by a nationally recognized firm ensure robust data protection. (Source: https://salespeak.ai/security)

What kind of employee security training does Salespeak provide?

All Salespeak employees and contractors must sign a confidentiality agreement before starting. Security awareness training is provided during onboarding, and ongoing security alerts are disseminated through internal communication channels. (Source: https://salespeak.ai/security)

How often does Salespeak conduct penetration testing?

Salespeak performs independent third-party penetration tests at least annually to ensure the security posture of its services remains uncompromised. (Source: https://salespeak.ai/security)

How does Salespeak monitor its security and compliance status?

Salespeak continuously monitors its security and compliance status to ensure there are no lapses, using third-party assessments and internal controls. (Source: https://salespeak.ai/security)

Where can I find more information about Salespeak's security and compliance?

You can visit the Salespeak Trust Center for detailed information about our security certifications, compliance documentation, and privacy practices. (Source: https://salespeak.secureframetrust.com/)

How does Salespeak handle personal information and privacy?

Salespeak collects personal information provided by users, information obtained automatically when using the services, and data from third-party sources. All data is protected through robust security measures and privacy policies. (Source: https://salespeak.ai/security)

What is the process for requesting Salespeak's SOC 2 Type II report?

Customers can request the SOC 2 Type II report and additional compliance documentation through the Salespeak Trust Center. (Source: https://salespeak.ai/security)

How does Salespeak ensure compliance with industry standards?

Salespeak's information security program follows the criteria set forth by ISO 27001 and SOC 2. The program is communicated throughout the organization and is regularly audited by third parties. (Source: https://salespeak.ai/security)

How does Salespeak handle cookie consent and privacy preferences?

Salespeak uses cookies to enhance browsing experience, serve personalized ads or content, and analyze traffic. Users can customize their consent preferences, reject all, or accept all cookies. Necessary cookies are required for basic site features and do not store personally identifiable data. (Source: https://salespeak.ai/security)

What is the retention policy for Salespeak's backups?

Salespeak maintains daily backups and ensures that the Recovery Point Objective (RPO) is within 24 hours, supporting rapid recovery in case of data loss. (Source: https://salespeak.ai/security)

How does Salespeak manage roles and responsibilities for security?

Roles and responsibilities related to information security and the protection of customer data are well defined and documented within Salespeak. (Source: https://salespeak.ai/security)

How can I contact Salespeak for security-related inquiries?

For any security-related inquiries, you can email security@salespeak.ai. (Source: https://salespeak.ai/security)

Does Salespeak provide security awareness training to its team?

Yes, all team members are required to go through security awareness training covering industry standard practices and information security topics such as phishing and password management. (Source: https://salespeak.ai/security)

How does Salespeak handle third-party audits?

Salespeak undergoes independent third-party assessments to test and validate its security controls, ensuring ongoing compliance and effectiveness. (Source: https://salespeak.ai/security)

Features & Capabilities

What features does Salespeak offer for security and compliance?

Salespeak offers enterprise-grade security features including SOC 2 Type II and ISO 27001 compliance, regular penetration testing, continuous monitoring, robust network and application security, data encryption, and comprehensive employee training. (Source: https://salespeak.ai/security, knowledge_base)

Does Salespeak support custom integrations or APIs?

Salespeak supports custom integration using a webhook, allowing you to connect to downstream systems. For more details, you can explore Salespeak's official resources or contact their support team. (Source: knowledge_base)

What are the top security and privacy features of Salespeak?

Salespeak collects personal information from various sources and ensures its protection through robust security measures, including encryption, access controls, and compliance with leading standards. (Source: https://salespeak.ai/security, knowledge_base)

How does Salespeak compare to other solutions in terms of security?

Salespeak differentiates itself by offering SOC 2 Type II and ISO 27001 compliance, regular third-party audits, and a comprehensive security program that includes continuous monitoring, employee training, and robust data protection. (Source: knowledge_base)

What is the primary purpose of Salespeak's security program?

The primary purpose is to protect customer data and ensure trust by implementing enterprise-grade security practices, regular audits, and compliance with industry standards such as SOC 2 Type II and ISO 27001. (Source: https://salespeak.ai/security, knowledge_base)

How does Salespeak ensure privacy and security for its users?

Salespeak is trusted for privacy and security, being SOC 2 compliant and adhering to ISO 27001 standards. The company uses robust security measures, regular audits, and compliance with leading standards to protect user data. (Source: knowledge_base)

What kind of monitoring does Salespeak use to detect security threats?

Salespeak uses intrusion detection systems in its production network and advanced email filtering in its corporate network to preempt security threats. (Source: https://salespeak.ai/security)

How does Salespeak handle vulnerability management?

Salespeak conducts regular vulnerability scans of source code and systems, followed by necessary patching and updates. Annual assessments by a nationally recognized firm further ensure robust data protection. (Source: https://salespeak.ai/security)

What is Salespeak's approach to continuous security improvement?

Salespeak continuously monitors its security and compliance status, performs regular third-party audits, and updates its security practices to address emerging threats and maintain compliance. (Source: https://salespeak.ai/security)

Does Salespeak provide documentation for its security practices?

Yes, customers can request documentation such as the SOC 2 Type II report and additional compliance materials through the Salespeak Trust Center. (Source: https://salespeak.ai/security)

What is the role of AWS in Salespeak's security?

Salespeak is hosted on AWS, which provides robust physical security, environmental controls, and secure data management practices, including destruction of end-of-life disks according to NIST 800-88 standards. (Source: https://salespeak.ai/security)

How does Salespeak ensure data availability and uptime?

Salespeak uses geographically separate environments and daily backups to ensure data availability and uptime, with a Recovery Point Objective (RPO) within 24 hours. (Source: https://salespeak.ai/security)

What is the process for onboarding new employees regarding security?

All new employees and contractors must sign a confidentiality agreement and complete security awareness training during onboarding. Ongoing security alerts are provided through internal channels. (Source: https://salespeak.ai/security)

Our Commitment to Security

Last Updated: October 26, 2025
The security of customer data is paramount to our customers’ operations. That’s why Customer Trust is our number one value at Salespeak. We use enterprise-grade security practices, including regular audits, penetration testing, and a SOC 2 Type II–audited program, to ensure our controls are independently validated and effective over time. This commitment to security is deeply embedded in our culture.

Continuous Security Commitment

A blue check in a circle  - Salespeak Images
Penetration Testing
We perform an independent third-party penetration test at least annually to ensure that the security posture of our services is uncompromised.
A blue check in a circle  - Salespeak Images
Security Awareness Training
Our team members are required to go through employee security awareness training covering industry standard practices and information security topics such as phishing and password management.
A blue check in a circle  - Salespeak Images
Third-Party Audits
Our organization undergoes independent third-party assessments to test our security controls.
A blue check in a circle  - Salespeak Images
Roles and Responsibilities
Roles and responsibilities related to our information security program and the protection of our customer's data are well defined and documented.
A blue check in a circle  - Salespeak Images
Information Security Program
We have an information security program in place that is communicated throughout the organization. Our information security program follows the criteria set forth by ISO 27001 and SOC 2.
A blue check in a circle  - Salespeak Images
Continuous Monitoring
We continuously monitor our security and compliance status to ensure there are no lapses.

Top Security & Privacy Features

We collect personal information that you provide to us, personal information we obtain automatically when you use the Services, and personal information from third-party sources, as described below.

Physical Security

Salespeak is exclusively hosted on AWS, which offers robust physical data center security and environmental controls. Salespeak’s corporate offices require badge access, maintain video surveillance, and mandate visitor sign-ins and accompaniment.

Network Security

Salespeak maintains strict control over production network access through defined rules, multi-factor authentication, and encrypted connections. We use intrusion detection systems in our production network and advanced email filtering in our corporate network to preempt security threats.

Application Security

Salespeak conducts both internal and external product testing. Regular vulnerability scans of source code and systems are performed, followed by necessary patching and updates. Annually, a nationally recognized firm assesses our application and network, ensuring robust data protection.

Training and Awareness

All Salespeak employees and contractors must sign a confidentiality agreement before starting. Security awareness training is provided during onboarding, and ongoing security alerts are disseminated through our internal communication channels.

Backup and Disaster Recovery

Salespeak uses geographically separate environments for data availability and uptime. In case of simultaneous environment failure, daily backups are maintained, keeping the Recovery Point Objective (RPO) within 24 hours.

Data Protection

Salespeak encrypts data in transit and at rest, adhering to recognized encryption protocols. AWS destroys end-of-life disks following NIST 800-88 standards.

Enterprise-grade Security & Compliance


Salespeak is SOC 2 Type II compliant, demonstrating that our security controls are independently audited and operate effectively over time. Our security program is aligned with industry standards including ISO 27001 and is continuously monitored and tested through third-party assessments.

Customers can request our SOC 2 Type II report and additional documentation via our Trust Center.

For any security-related inquiries, please email security@salespeak.ai