Security
Last updated: 24 August 2026, 22:00 GST
1. Overview
Monarc is a cybersecurity company. Security is how the product is built, not a bolt-on. Monarc Voice, Monarc CRM, and the Monarc Security Platform are in development. This page describes the security practices designed into those products. Where a detail is account-specific, it is confirmed during onboarding.
2. Tenant Isolation
Each customer's data is separated from other customers' data. Access is scoped so that one customer cannot view another customer's records. This page states the principle; implementation detail is not published here and is confirmed during onboarding.
3. Encryption
Customer data is encrypted in transit and at rest. Algorithms, ciphers, and key lengths are not stated on this page; they are confirmed during onboarding.
4. Access Control
Access to customer data is role-based and granted on a least-privilege basis. Access to customer data is limited and logged.
5. Audit Records
Monarc keeps audit records of access to customer data and of significant configuration changes. These records exist so that access can be reviewed. What is retained, and for how long, is configured per account.
6. Data Retention
Retention of customer data is configurable per account rather than fixed by Monarc. See the Data Retention Policy.
7. Vulnerability Management
Monarc runs its own security testing of the products it builds. Cadence and scope are not stated on this page; they are confirmed during onboarding.
8. Incident Response
Monarc has an incident response process. Where a security incident affects a customer's data, that customer is notified. This page does not commit to a notification timeframe.
9. Reporting a Vulnerability
If you believe you have found a security vulnerability in a Monarc product or this website, contact contact@usemonarc.com. Please do not share exploit detail in a public channel.
10. Certification Status
Monarc holds no security certifications at this time. Its practices are designed to align with UAE PDPL and India DPDP requirements.
Compliance & Trust
- PDPL UAE
- DPDP India
- Designed to align with ISO 27001
- Security-first engineering