# Security & Data Protection

{% hint style="info" %}
Need immediate access to the Dispel Security Team? Email us at <security@dispel.com>.
{% endhint %}

## Our commitment

We build for critical infrastructure. That means your data security, privacy, and uptime are non-negotiable. Dispel’s Zero Trust Engine and operations program are independently audited, mapped to leading frameworks, and designed to help you meet your own compliance obligations.

## Certifications & attestations

* **SOC 2 Type 2** and **ISO 27001**: audited by accredited third parties, with controls spanning security, availability, confidentiality, and integrity.
* **FedRAMP High (pending)** and **export & sector standards** (e.g., EAR, ITAR, EN 301 549 accessibility, VPAT/Section 508) supported by internal controls and documentation.
* **CMMC Level 1**: CMMC, or Cybersecurity Maturity Model Certification, is a U.S. Department of Defense (DoD) program that standardizes cybersecurity for defense contractors

> Need attestation reports and certificates? Visit our [Trust Center](https://app.drata.com/trust/9cbb69e8-0c38-11ee-865f-029d78a187d9).

## Built for compliance alignment

Many customers inherit Dispel’s controls to satisfy portions of their own frameworks. We provide alignment and shared-responsibility guidance for **NIST 800-53/82**, **IEC 62443**, **NERC CIP**, and **NIS2**.

## Privacy by design

We protect personal data and offer transparent controls over collection and processing. Our program supports **EU GDPR** and **U.S. CCPA** requirements, with clear policies and contact paths for questions or concerns.


---

# Agent Instructions: Querying This Documentation

If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://legal.dispel.com/security-and-data-protection/readme.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
