Is this your company? Buyers are checking Pendula Solutions Pty Ltd here. Claim pendula.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.
Claim freePendula Solutions Pty Ltd
Sourced from public information. Not yet verified by the company.
Pendula Solutions Pty Ltd is SOC 2 Type II compliant. Pendula Solutions Pty Ltd also holds ISO 27001, and HIPAA.
About
Pendula is a Customer Engagement Platform that combines a powerful no-code workflow studio. Layered with living and historical customer data, on the spot market and competitive insights, as well as real-time sentiment analysis - Pendula allows businesses to build unsurpassed 1-1 experiences with their customers at scale, building lifelong loyalty and unprecedented Customer Lifetime Value. Pendula was founded in 2016 and is headquartered in Sydney Pendula organisation operates from AWS regions in the US, UK and Australia with all customer data staying in the AWS environment in the selected regi
Compliance & infrastructure
Subprocessors
11- AAuth0 · Authentication to Pendula platformAU, UK or US based on customer choice
- AAmazon Web Services · Cloud hosting all compute and storage infrastructure.AU, UK or US based on customer choice
- GGitHub · Source code managementN/A
- DDatadog · Log management and storageUS
- PPulumi · Infrastructure as CodeN/A
- PPagerDuty · Cloud monitoring and response
- OOkta · All Authentication not directly used by customers.US
- SSnyk · Vulnerability ScanningN/A
- TTeleport · Privileged Access ManagementSIngapore
- TTwilio · Messaging ServicesVarious (depends on SMS destination)
- OOpenAI - Customer · EngineeringUS
Compliance leadership
The person who leads Pendula Solutions Pty Ltd's SOC 2 isn't listed yet. Claim this profile to add it.
Penetration test
Unknown. Pendula Solutions Pty Ltd's penetration test vendor isn't listed yet.
Claim this profile to add it.
Recent updates
FAQ Added and Security White Paper uploadedJan 2025
Pendula has added more documentation on its security included a white paper summary of its environment and an FAQ based on some of the questions from Pendula's entry on the CSA CAIQ
This listing is partial
6/11 details · 55%SOC2C shows the verified essentials. 5 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.
- Auditorraises trustAdd the CPA firm that issued your SOC 2 so buyers can verify who signed it.
- Report dateraises trustAdd your most recent report period so buyers see how current your SOC 2 is.
- Renewal dateAdd your renewal window so buyers know your coverage is active.
- DocumentsList the documents you share (SOC 2 report, SOC 3, pen-test summary, DPA) and whether each is public or on request.
- Security controlsConfirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.
Frequently asked
Is Pendula Solutions Pty Ltd SOC 2 compliant?
Is Pendula Solutions Pty Ltd ISO 27001 certified?
Is Pendula Solutions Pty Ltd HIPAA compliant?
Is Pendula Solutions Pty Ltd SOC 2 Type I or Type II?
Can I use Pendula Solutions Pty Ltd's SOC 2 for a vendor risk assessment?
Is Pendula Solutions Pty Ltd penetration tested?
Is Pendula Solutions Pty Ltd secure?
Does Pendula Solutions Pty Ltd have a bug bounty or vulnerability disclosure program?
Who are Pendula Solutions Pty Ltd's subprocessors?
Where does Pendula Solutions Pty Ltd host or store data?
Where is Pendula Solutions Pty Ltd's trust center or security page?
How are Pendula's FAQ's organised and what is the source of the questions.
Are there any material claims or judgements against the company?
Has the company suffered Data Loss or Security Breach within the last 3 years
Are information governance program policies and procedures sponsored by Pendula’s leadership established, documented, approved, communicated, applied, evaluated, and maintained? Are the policies and procedures reviewed and updated at least annually?
Does Pendula have an established formal, documented, and leadership-sponsored enterprise risk management (ERM) program that includes policies and procedures for identification, evaluation, ownership, treatment, and acceptance of cloud security and privacy risks?
Are the policies and procedures reviewed and updated at least annually?
Is the ERM program that has been approved by management, communicated to appropriate constituents and an assigned owner to maintain and review the program?
Does Pendula have compliance procedures in place to ensure the Information Security Policy is read, understood, and implemented by the staff?
Do exceptions to Pendula’s information security policies require an approval process?
Are the roles and responsibilities for planning, implementing, operating, assessing, and improving governance programs defined and documented as part of Pendula’s ISMS?
Are all relevant standards, regulations, legal/contractual, and statutory requirements applicable to Pendula identified and documented?
Is an audit management process defined and implemented to support audit planning, risk analysis, security control assessments, conclusions, remediation schedules, report generation, and reviews of past reports and supporting evidence?
Business & Industrial peers that completed SOC 2

Newsworthy.ai

1099-Prep

Octopus Deploy
