
Security at
Doorway

Security at
Doorway

Security at
Doorway
Security at Doorway
Doorway is architected with security and privacy at its core, purpose-built to meet the needs of enterprise-grade infrastructure.
Our systems are designed for resilience, scalability, and strict regulatory alignment — including GDPR, UK GDPR, CCPA, and CPRA compliance. We are SOC2 certified through EY, our audit partner.
Security at Doorway
Doorway is architected with security and privacy at its core, purpose-built to meet the needs of enterprise-grade infrastructure.
Our systems are designed for resilience, scalability, and strict regulatory alignment — including GDPR, UK GDPR, CCPA, and CPRA compliance. We are SOC2 certified through EY, our audit partner.
Security at Doorway
Doorway is architected with security and privacy at its core, purpose-built to meet the needs of enterprise-grade infrastructure.
Our systems are designed for resilience, scalability, and strict regulatory alignment — including GDPR, UK GDPR, CCPA, and CPRA compliance. We are SOC2 certified through EY, our audit partner.

Never store sensitive personal information
To support our clients’ due diligence, we provide an Information Security Bundle outlining our technical controls, certifications, and data handling policies, along with annual penetration testing and quarterly vulnerability scan results — all available upon request. For additional resources, including our full subprocessors list or to contact our InfoSec team directly, see the links below.
We collect only essential data (employee PII) and never store sensitive personal information. All data is securely stored in a SQL database hosted on AWS within the EU. Our subprocessors are located exclusively in the EU or US and are all participants in the Data Exchange Framework Program.

Never store sensitive personal information
To support our clients’ due diligence, we provide an Information Security Bundle outlining our technical controls, certifications, and data handling policies, along with annual penetration testing and quarterly vulnerability scan results — all available upon request. For additional resources, including our full subprocessors list or to contact our InfoSec team directly, see the links below.
We collect only essential data (employee PII) and never store sensitive personal information. All data is securely stored in a SQL database hosted on AWS within the EU. Our subprocessors are located exclusively in the EU or US and are all participants in the Data Exchange Framework Program.

Never store sensitive personal information
To support our clients’ due diligence, we provide an Information Security Bundle outlining our technical controls, certifications, and data handling policies, along with annual penetration testing and quarterly vulnerability scan results — all available upon request. For additional resources, including our full subprocessors list or to contact our InfoSec team directly, see the links below.
We collect only essential data (employee PII) and never store sensitive personal information. All data is securely stored in a SQL database hosted on AWS within the EU. Our subprocessors are located exclusively in the EU or US and are all participants in the Data Exchange Framework Program.
Fact Sheet
Compliance
GDPR, UK GDPR, CCPA, and CPRA compliant
Certifications
SOC2 Certified via EY (Doorway’s audit partner)
Data Storage
Only employee PII collected or stored - no Sensitive Data Data encrypted at rest and in transit. Data stored in highly available AWS RDS within dedicated VPC in the EU. All subprocessors are based in the US or EU, and are members of the Data Exchange Framework Program
Security Practices
Information Security Bundle - containing Doorway’s instituted data security and privacy controls, and certifications - is available for download on request Annual penetration and quarterly vulnerability test results are available for download on request.
Fact Sheet
Compliance
GDPR, UK GDPR, CCPA, and CPRA compliant
Certifications
SOC2 Certified via EY (Doorway’s audit partner)
Data Storage
Only employee PII collected or stored - no Sensitive Data Data encrypted at rest and in transit. Data stored in highly available AWS RDS within dedicated VPC in the EU. All subprocessors are based in the US or EU, and are members of the Data Exchange Framework Program
Security Practices
Information Security Bundle - containing Doorway’s instituted data security and privacy controls, and certifications - is available for download on request Annual penetration and quarterly vulnerability test results are available for download on request.
Fact Sheet
Compliance
GDPR, UK GDPR, CCPA, and CPRA compliant
Certifications
SOC2 Certified via EY (Doorway’s audit partner)
Data Storage
Only employee PII collected or stored - no Sensitive Data Data encrypted at rest and in transit. Data stored in highly available AWS RDS within dedicated VPC in the EU. All subprocessors are based in the US or EU, and are members of the Data Exchange Framework Program
Security Practices
Information Security Bundle - containing Doorway’s instituted data security and privacy controls, and certifications - is available for download on request Annual penetration and quarterly vulnerability test results are available for download on request.
Resources

Subprocessors List
Our work is made possible by our ecosystem. Doorway is built for interoperability with several of the world’s leading software companies to remain at the forefront of innovation, and we are proud to share a list of our partners.

Information Security Bundle
With great power comes great responsibility. Our Information Security Bundle contains complete documentation around the architecture and practices that enable us to serve our clients.

Contact Our InfoSec Team
We have a dedicated team for all Information Security and TPRM processes. Please let us know if you would like to connect.
Resources

Subprocessors List
Our work is made possible by our ecosystem. Doorway is built for interoperability with several of the world’s leading software companies to remain at the forefront of innovation, and we are proud to share a list of our partners.

Information Security Bundle
With great power comes great responsibility. Our Information Security Bundle contains complete documentation around the architecture and practices that enable us to serve our clients.

Contact Our InfoSec Team
We have a dedicated team for all Information Security and TPRM processes. Please let us know if you would like to connect.
Resources

Subprocessors List
Our work is made possible by our ecosystem. Doorway is built for interoperability with several of the world’s leading software companies to remain at the forefront of innovation, and we are proud to share a list of our partners.

Information Security Bundle
With great power comes great responsibility. Our Information Security Bundle contains complete documentation around the architecture and practices that enable us to serve our clients.

Contact Our InfoSec Team
We have a dedicated team for all Information Security and TPRM processes. Please let us know if you would like to connect.
Uncover Intelligent Performance
The innovation curve for client engagement is exponential.
Learn how Doorway's solutions can improve your team's performance.
Doorway © 2025
Uncover Intelligent Performance
The innovation curve for client engagement is exponential.
Learn how Doorway's solutions can improve your team's performance.
Doorway © 2025
Uncover Intelligent Performance
The innovation curve for client engagement is exponential.
Learn how Doorway's solutions can improve your team's performance.
Doorway © 2025