Version 1.0 • For informational purposes only. Privacy Policy and Terms of Use govern the use of the ClearMark platform.
OUR Security PHILOSOPHY
Trust is the foundation of every customer relationship. ClearMark was designed with security, privacy, and responsible AI as core engineering principles from the beginning. Our objective is to help insurance professionals confidently use business intelligence while protecting customer information.
Security by Design
We incorporate security throughout the software development lifecycle using layered controls, secure cloud architecture, change management, monitoring, and continuous improvement rather than treating security as a feature added later.
Cloud Infrastructure
Hosted on Amazon Web Services (AWS).
Highly available, resilient cloud architecture.
Continuous monitoring and operational visibility.
Infrastructure as Code (IaC) and controlled deployments.
Cloud-native disaster recovery capabilities.
Data Protection
Encryption in transit using TLS/HTTPS.
Encryption at rest using AWS-native encryption technologies where applicable.
Role-based access controls (RBAC).
Administrative multi-factor authentication (MFA).
Least-privilege administrative access.
Audit logging and centralized monitoring.
Privacy by Design
Privacy considerations are incorporated throughout the design and operation of the platform. We seek to minimize unnecessary data collection, restrict access according to business need, and implement technical and organizational safeguards throughout the information lifecycle.
Privacy & Regulatory Support
ClearMark is designed to support organizations in meeting applicable privacy obligations, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA). While compliance ultimately depends on each customer's implementation and business processes, ClearMark provides technical safeguards and operational capabilities that help support those obligations.
Responsible AI
Artificial intelligence is designed to augment — not replace — professional judgment. Human oversight remains central to how ClearMark delivers recommendations and insights.
Compliance Roadmap
Our security program is designed to align with recognized frameworks including SOC 2 Type II, ISO/IEC 27001, and ISO/IEC 42001. These frameworks guide our engineering and operational practices. ClearMark does not currently claim certification or regulatory approval under these frameworks. As the platform matures, we intend to pursue independent certifications and assessments where appropriate.
Trust Center
Our Trust Center brings together our Security Statement, Security FAQ, Responsible AI Statement, and other trust resources so customers can understand how we protect information and govern our platform.
Our Commitment
Security, privacy, and customer trust are long-term commitments. We will continue investing in technology, governance, and operational excellence while improving our security program over time.
CLEARMARK TRUST CENTER
Responsible AI Statement
Version 1.0 • For informational purposes only. Privacy Policy and Terms of Use govern the use of the ClearMark platform.
Our AI Philosophy
AI should help professionals make better decisions — not make decisions for them. ClearMark uses AI to surface relevant intelligence while keeping people in control.
How We Use AI
AI assists with identifying meaningful events, recognizing patterns, prioritizing opportunities, summarizing information, and reducing manual research.
Human Oversight
Users remain responsible for business decisions. AI-generated insights are intended to augment — not replace — professional judgment.
Privacy & Security
AI capabilities follow the same security and privacy principles as the rest of the platform. Customer data is protected through encryption, access controls, and secure cloud practices. ClearMark does not use customer data to train publicly available AI models.
AI Governance
We emphasize transparency, accountability, responsible automation, continuous monitoring, and ongoing improvement.
Future Standards
Our AI governance program is designed with consideration for ISO/IEC 42001 and other recognized responsible AI frameworks. We do not currently claim certification under these standards.
Our Commitment
We are committed to developing trustworthy AI that enhances human expertise while protecting customer privacy and maintaining enterprise-grade governance.
CLEARMARK TRUST CENTER
Frequently Asked Questions
For additional information, please see the Security Statement, Responsible AI Statement, Privacy Policy, Terms of Use, and other resources in the ClearMark Trust Center.
We use layered security controls including encryption, least-privilege access controls, secure authentication, monitoring, and audit logging.
Does ClearMark sell customer data?
No.
Customer information is used only to provide the services requested by our customers, consistent with our agreements and Privacy Policy.
Does ClearMark train public AI models with customer data?
No.
ClearMark does not use customer data to train publicly available foundation or generative AI models.
Is customer data isolated?
Yes.
Logical access controls are designed so customers can access only the information they are authorized to view.
Is ClearMark certified?
ClearMark is not currently certified under SOC 2 Type II, ISO/IEC 27001, or ISO/IEC 42001. These frameworks guide our security program, and we intend to pursue independent assessments as the platform matures.
Is ClearMark GDPR or CCPA certified?
Neither GDPR nor CCPA are certification programs. ClearMark is designed to support organizations in meeting applicable privacy obligations through technical safeguards and operational controls.