Security and trust

Built for the regulated enterprise.

LeaseSys reads some of the most sensitive records you own. Here is exactly how it treats them, with independently audited controls and complete observability.

SOC 2 Type II
ISO 27001
CCPA

The controls behind the badges.

SOC 2 Type II

Independently audited controls across security, availability, and confidentiality.

Encryption

AES-256 at rest, TLS 1.3 in transit, with separate encryption for each tenant's keys.

Access control

Role-based access with fine-grained scopes, session controls, and break-glass workflows.

Single sign-on

SSO, SAML, and SCIM with Azure AD, Okta, Google, and any SAML 2.0 provider.

Audit logs

Immutable, exportable, and queryable. Every action, agent decision, and access is recorded.

Compliance monitoring

Continuous control monitoring with evidence collection and drift alerts.

Data governance

Data classification, retention policies, redaction, and lifecycle controls.

Multi-tenancy

Tenant isolation by design, with regional data-residency options.

Your data is your data.

LeaseSys reads from your systems and does not need write access to do its job. Every connection is scoped to what it needs, and you can disconnect it at any time.

Your portfolio data is never used to train models or shared with other customers. Every tenant is isolated. Retention, purge, and export are controlled by you.

Talk to the security team

Ready to see it against real data?

We will walk through the security model in detail on the briefing.

Next: why we built it