# Trust & Security Model

### 🛡️I**nfrastructure Security**

* Hosted on **AWS** with multi-tenant isolation (separate DB per customer).
* **Data stored in Europe** by default.
* **Encryption** at rest and in transit.
* Restricted production access with audit logs.

💡 *Why this matters:* Ensures your data is segregated, encrypted, and protected at the platform level.

***

### 👥 **Organizational Security**

* **SSO + MFA** for internal systems wherever available.
* Role-based employee access management.
* Regular access & vendor reviews.
* Secrets and API keys stored only in AWS Secrets Manager.
* Employee background checks & ongoing security training.

💡 *Why this matters:* Minimizes insider risk and ensures staff follow strict controls.

***

### :globe\_with\_meridians: **Availability & Continuity**

* Backups stored across multiple availability zones.
* 24/7 continuous monitoring of systems.
* Disaster recovery plan tested annually.

💡 *Why this matters:* Your service stays available even under failure scenarios.

***

### :scroll: **Compliance & Trust Center**

* **ISO 27001:2022** certified.
* View our full security posture, policies and certifications anytime in the [Cakewalk Trust Center](https://app.drata.com/trust/9cbc7f12-0c38-11ee-865f-029d78a187d9).

💡 *Why this matters:* Transparent compliance documentation for your auditors.


---

# Agent Instructions: Querying This Documentation

If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://docs.getcakewalk.io/concepts/trust-and-security-model.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
