Logo for Figma

Figma

Figma is a cloud-based design and prototyping tool that helps teams collaborate through every step of the design process.

Users

Logo for Carta

Carta

Logo for Stripe

Stripe

Links

FedRAMP Marketplace

Accreditations

FedRAMP (In Process)

The Federal Risk and Authorization Management Program (FedRAMP) is a government-wide program that provides a standardized approach to security assessment, authorization, and continuous monitoring for cloud products and services.

SOC 2 Type II

SOC 2 Type II is a compliance framework that assesses and verifies the effectiveness of an organization's internal controls and security practices over a specified period, providing assurance regarding the security, availability, processing integrity, confidentiality, and privacy of customer data.

SOC 3

SOC 3 is a publicly available summary report that provides an overview of an organization's adherence to the SOC 2 framework, focusing on security, availability, processing integrity, confidentiality, and privacy controls, which can be shared with the public and potential customers to demonstrate compliance.

Cloud Security Alliance: Level 1

The Cloud Security Alliance: Level 1 is a foundational set of guidelines and best practices for cloud security, offering essential recommendations to help organizations secure their cloud computing environments.

ISO 27001

ISO 27001 is an international standard for information security management systems that provides a framework for organizations to establish, implement, maintain, and continually improve their information security practices.

ISO 27018

ISO 27018 is an international standard that outlines privacy controls and guidelines for the protection of personally identifiable information (PII) in cloud computing environments, emphasizing the importance of data privacy and compliance with applicable data protection regulations.

EU Cloud Code of Conduct: Level 2

The EU Cloud Code of Conduct: Level 2 is a set of guidelines and standards for cloud service providers operating in the European Union, focusing on data protection, security, and transparency to ensure compliance with EU data protection regulations.