Security & Trust

Your security and privacy are our highest priorities. Learn how we protect your data and maintain the trust you place in SelfInterviewed.

Enterprise-Grade Security

How We Protect Your Data

We implement multiple layers of security to ensure your personal information and practice sessions remain private and secure.

End-to-End Encryption

All your video recordings and personal data are encrypted using AES-256 encryption both in transit and at rest.

  • TLS 1.3 for data transmission
  • AES-256 encryption for stored data
  • Zero-knowledge architecture
  • Encrypted backups
Multi-Factor Authentication

Secure your account with two-factor authentication using SMS, email, or authenticator apps.

  • SMS verification
  • Email verification
  • TOTP authenticator support
  • Backup recovery codes
Secure Infrastructure

Our platform runs on enterprise-grade infrastructure with continuous monitoring and security updates.

  • SOC 2 Type II certified
  • 24/7 security monitoring
  • Regular penetration testing
  • Automated vulnerability scanning
Privacy by Design

We collect only the minimum data necessary and give you full control over your information.

  • Data minimization practices
  • User data ownership
  • Right to deletion
  • Transparent data usage

Certifications & Compliance

We maintain industry-leading certifications and comply with global privacy regulations

SOC 2 Type II

Audited controls for security, availability, and confidentiality

Certified

GDPR Compliant

Full compliance with European data protection regulations

Compliant

ISO 27001

International standard for information security management

In Progress

CCPA Compliant

California Consumer Privacy Act compliance

Compliant

Our Security Practices

Comprehensive security measures across all aspects of our platform

Data Protection
  • All personal data is encrypted at rest and in transit
  • Regular data backups with encryption
  • Automated data retention policies
  • Secure data deletion upon account closure
Access Controls
  • Role-based access control (RBAC) for employees
  • Principle of least privilege enforcement
  • Regular access reviews and audits
  • Mandatory security training for all staff
Infrastructure Security
  • Network segmentation and firewalls
  • Intrusion detection and prevention systems
  • Regular security patches and updates
  • Distributed denial-of-service (DDoS) protection
Incident Response
  • 24/7 security monitoring and alerting
  • Documented incident response procedures
  • Regular security incident simulations
  • Transparent communication about security issues

Security Architecture

Multi-layered security approach protecting your data at every level

Cloud Security

Hosted on AWS with enterprise security controls and compliance certifications

Database Protection

Encrypted databases with access controls, audit logging, and backup encryption

Application Security

Secure coding practices, regular security testing, and vulnerability management

Keep Your Account Secure

Here's how you can help protect your SelfInterviewed account

Best Practices
  • Use a strong, unique password
  • Enable two-factor authentication
  • Keep your email account secure
  • Log out on shared devices
  • Review account activity regularly
Warning Signs
  • Suspicious login notifications
  • Unexpected password reset emails
  • Changes you didn't make
  • Phishing emails claiming to be from us
  • Unusual account activity

Security Incident Response

Our commitment to transparency and rapid response

Immediate Response

< 1 hour detection and containment of security incidents

User Notification

< 24 hours notification to affected users with clear guidance

Full Resolution

Complete remediation and post-incident analysis within 72 hours

Questions About Security?

Our security team is here to address your concerns and provide additional information

Security Email: security@selfinterviewed.com

Bug Bounty: Responsible disclosure program available