Your data is private and secure
We recognise that the security and privacy of your data is vital.
Our Commitments to You
- Will never harvest or sell your data
- Will only share data with limited third parties (that do not store your data any longer than necessary)
- Will dedicate significant resources to safeguarding your data
- Will maintain a small team (to increase control and transparency)
- Will take a 'Zero Trust' approach to cybersecurity
How Zero Trust Works
ZTNANever Trust, Always VerifyPer-Application AccessSOC 2 Aligned
Zero Trust Network Access (ZTNA) technologies are increasingly considered best practice – over Virtual Private Networks (VPNs) – due to their robust security model. Unlike VPNs, which assume trust once a user is inside the network, ZTNA operates on the principle of 'never trust, always verify'.
This means that every user, device and application must continuously prove their identity and authorisation to access resources, minimising the risk of internal threats and lateral movement within the network. This granular level of security ensures that even if a user's credentials are compromised, the attacker is restricted from accessing other parts of the network.
ZTNA provides more precise control over access policies. With VPNs, once a user gains access, they often have broad, undifferentiated access to the network, which can lead to potential security vulnerabilities. ZTNA, however, enforces strict access controls at a per-application level, ensuring users only access the specific resources they need for their roles.
This minimises the attack surface and reduces the risk of unauthorised access. Additionally, ZTNA solutions often incorporate advanced monitoring and analytics to detect unusual behaviour, allowing for a rapid response to potential security incidents.
After observing cyberattacks against VPNs provided by major vendors, such as Cisco, Palo Alto, Fortinet, Ivanti and Check Point, EventChain decided to shift to ZTNA technology for their IT and development stack to obtain industry-leading performance and security, making us immune to these types of VPN attacks.
SOC 2
Eventchain is committed to SOC 2 compliance across all five Trust Service Criteria — Security, Availability, Processing Integrity, Confidentiality, and Privacy. Our controls are designed to meet the rigorous requirements of a SOC 2 Type II audit, giving enterprise clients confidence that their data is handled with the highest operational standards.
GDPR
We are committed to full GDPR compliance. Personal data is collected only with a lawful basis, stored securely, and never shared beyond what is necessary to deliver our service. Individuals have the right to access, correct, or delete their data at any time via the form below — and we will honour every request within the statutory timeframe.
Submit a Data Request
We take data security seriously. In line with GDPR and SOC 2 compliance, you have full control over what happens to your data.
Full name *
Email *
What would you like to do? *
- Select a request type…
- Delete all data related to me
- Send me a copy of all data related to me
- I am reporting a security vulnerability
Any other questions?
Book a Strategy Session
Schedule a 30-minute walkthrough of EventChain and see how automated event orchestration works in practice.
No commitment required · 30 minutes · Free consultation.