Trust & Policy Center

background-image
Start your security review
View & download sensitive information
Ask for information
ControlK

Quantexa is an Independent Software Vendor (ISV), providing decision intelligence solutions for the public and private sectors. Quantexa solves challenges across data management, customer intelligence, know your customer (KYC), financial crime, fraud, security, and risk, and throughout the customer lifecycle.

Quantexa regards information and systems as valuable assets that require protection against a range of internal and external security risks. These risks have the potential to threaten the confidentiality, integrity, and availability of Quantexa's assets. To ensure the confidentiality of our clients' and our own data, Quantexa is committed to implementing effective controls across information, technical, personnel, and physical security. We handle and safeguard all information we use or store in a manner that is consistent with our relevant professional, ethical, legal, regulatory, and contractual obligations.

Information Security is at the core of our culture. We ensure that we educate our people and regularly refresh their knowledge so they each have a clear understanding of our expectations, and of the changing nature of the threats to the security of our information. Our security approach focuses on security by design, security governance, risk management and compliance.

HSBC-company-logoHSBC
Standard Chartered-company-logoStandard Chartered
Allianz-company-logoAllianz
Vodafone UK-company-logoVodafone UK
BNY Mellon-company-logoBNY Mellon
OFX-company-logoOFX
ABN AMRO-company-logoABN AMRO
Crown Commercial Service-company-logoCrown Commercial Service
Microsoft-company-logoMicrosoft
Google Cloud-company-logoGoogle Cloud
Accenture-company-logoAccenture
Moody's-company-logoMoody's

Documents

Featured Documents

REPORTS & ATTESTATIONSSOC 2 Report - Cloud AML & Unify
Information Security Management System (ISMS)
Quantexa Unify Vendor Attestation
Security Management Plan
View more
Trust & Policy Center Updates

F5 Security Incident

Copy link
Incidents

Originally published on October 20, 2025:

F5 Security Incident - No Impact to Quantexa

Quantexa is aware of the recent F5 security breach and can confirm that no F5 appliances are used within our production environment. We have no indication that any subcontractors or subprocessors have been impacted in a way that affects Quantexa systems or data.

For more information about this incident, please refer to the F5 Security Advisory.

Artifact Summary Now Available

General

Originally published on June 26, 2025:

Quantexa has now added published and next review dates to the document profiles to enhance transparency around the governance of our security framework.

SOC 2

Compliance

Originally published on April 2, 2025:

Quantexa's 2025 SOC 2 Type 1 reports are now available. Please note that there are two separate reports, one covering Decision Intelligence Platform and one covering Quantexa Cloud Product and Quantexa Unify Services.

Business Continuity Framework - ISO/IEC 22301

Compliance

Originally published on August 5, 2025:

An external attestation from Gallagher Insurance regarding Quantexa’s Business Continuity Framework is now available for review. This attestation provides independent assurance that our approach to business continuity is robust, comprehensive, and aligned with recognized best practices. In particular, it reflects Quantexa’s alignment with the principles of ISO/IEC 22301, the international standard for Business Continuity Management Systems. The attestation supports our commitment to maintaining high levels of organizational preparedness and client confidence in the face of potential disruption.

ISO 27001 and ISO 27017

Compliance

Originally published on September 25, 2025:

Quantexa is proud to announce the public release of its ISO/IEC 27001 and ISO/IEC 27017 certifications to promote transparency around the governance of our security framework.

Originally published on May 15, 2025:
Quantexa has successfully achieved ISO/IEC 27001:2022 and ISO/IEC 27017:2015 certifications for 2025. Once BSI issues the certificates, they will be uploaded, which is expected to be by the end of June 2025.

Originally published on September 18, 2024:
Quantexa is currently transitioning from ISO 27001:2013 to ISO 27001:2022 to align with the latest security management standards. As part of this process, we are updating our Statement of Applicability (SoA) to reflect the new requirements.

If you need help using this Trust & Policy Center, please contact us.
Contact support
If you think you may have discovered a vulnerability, please send us a note.
Report issue