Data privacy and information security at Culture Amp
To earn and maintain the trust of the world’s most innovative and culture-focused companies, Culture Amp takes all reasonable precautions to protect the confidentiality, integrity, and availability of all systems and data entrusted to us by our customers and their employees.
Security at Culture Amp
Learn about our security and data protection measures as well as our compliance & regulatory certifications at our Security & Privacy Trust Centre
Compliance certifications, standards, and regulations
Culture Amp is certified as compliant with ISO/IEC 27001:2013 which is globally recognized as the premier information security management system (ISMS) standard.
General Data Protection Regulation (GDPR)
Culture Amp is GDPR compliant, handling all personal data in compliance with the latest EU laws.
California Consumer Privacy Act (CCPA)
Culture Amp is compliant with the California Consumer Privacy Act (CCPA).
Brazilian General Data Protection Law (LGPD)
Culture Amp is compliant with the Brazilian General Data Protection Law (LGPD).
Frequently asked questions
Where is data stored?
All production systems are hosted in Amazon's AWS cloud platform. Data is stored in AWS US (Oregon) and backed up in AWS US (Virginia). For customers located in Europe, data is stored in AWS EU (Ireland) and backed up in AWS EU (Frankfurt).
What private information do you require to provide your service?
Culture Amp requests a full name and email address for basic functionality.
Customers often choose to include demographics within the platform such as job title, department, gender, and tenure.
Your browser is out of date. Our website is built to provide a faster, more engaging experience. Your browser may not support all of our features. Please update to the latest version of Microsoft Edge or contact your network administrator.