Security & Trust

Security and compliance built for enterprise recruiting

SOC 2 Type II ready. Full audit trail. Candidate consent on every assessment.

SOC 2 Type II
AES-256 encryption
Full audit trail

SOC 2 Type II Ready

Direct answer

Beaverhand has completed an internal SOC 2 readiness assessment: security controls are built and mapped to the Trust Services Criteria - covering data handling, access controls, encryption, incident response, and availability. The Type II observation window has not yet been completed, so no audit report is available today.

For agencies placing at enterprise clients, SOC 2 Type II is often a procurement requirement. We can walk your security reviewer through our controls and how they map to each criterion - request our security overview at security@beaverhand.com.

AI hiring law compliance

Illinois AI Video Interview Act✓ Compliant
Illinois · Disclosure + consent + deletion
NYC Local Law 144In review
New York City · Independent bias audit + notice
EEOC AI Hiring GuidanceMonitoring
Federal · No disparate impact
Maryland AEIA✓ Compliant
Maryland · Disclosure required
Colorado SB 205In review
Colorado · Algorithmic accountability

Data handling

Encryption

AES-256 at rest. TLS 1.3 in transit. Never sold or shared between customers.

Access controls

Role-based access. SSO (SAML 2.0) for Enterprise. Shareable links are view-only.

Retention

12 months default. Custom policies for Enterprise. Early deletion on request.

Deletion

Candidate or agency can request deletion at any time. Completed within 30 days.

Audit trail

Every assessment action logged. Full history available for compliance review.

Candidate consent

Disclosure and explicit consent collected before every assessment begins.

Frequently asked questions

Beaverhand · Built for non-technical recruiters

Enterprise-grade security. Agency-friendly pricing.

SOC 2 Type II ready. From $50 to start.