Palantir Security

Our cloud platform’s infrastructure, applications, and operations have been developed to comply and align with some of the most rigorous legal and regulatory requirements in industries today, including:

  • SSAE 18/ISAE 3000 Service Organization Control (SOC):
    • SOC 2, Type 2 (Security, Confidentiality, and Availability)
    • SOC 3
  • International Organization for Standardization (ISO), including but not limited to:
    • ISO 27001
    • ISO 27017
    • ISO 27018
    • ISO 9001
  • NIST 800-53 and NIST 800-171, including control sets for the following baselines:
    • FedRAMP High
    • FISMA High
    • Impact Level 2 DoD SRG
    • Impact Level 5 DoD SRG
    • Impact Level 6 DoD SRG
    • CMMC
  • And others, including:
    • Cyber Essentials Plus
    • NCSC Cloud Security Principles
    • NHS Digital Data Security and Protection Toolkit
    • GDPR
    • Web Content Accessibility Guidelines (WCAG) 2.1 and Section 508

Additionally, Palantir has extensive experience helping our customers meet specific regulatory and industry requirements. Our software provides functionality that customers can configure and operate to meet requirements such as those arising from:

  • SOC 1 / ISAE 3402
  • GxP
  • CCPA
  • CJIS
  • HIPAA
  • ITAR