Certified to meet global standards
Zmanda is a BETSOL product. BETSOL’s compliance program is designed to meet the requirements of regulated industries. Each certification below represents an ongoing commitment to customer data protection.
All certifications are audited annually by QRC, an accredited third-party assessor.
SOC 2 Type II
BETSOL's SOC 2 Type II attestation verifies the operational effectiveness of our security controls over a continuous 12-month period. The audit evaluates our systems against the trust principles of security, availability, and confidentiality—ensuring your data is protected, accessible when needed, and handled with care.
ISO 27001
BETSOL maintains ISO 27001 certification for our information security management system. This globally recognized standard validates our systematic approach to managing sensitive information through risk assessment, security controls, and continuous improvement.
ISO 9001
Our ISO 9001 certification demonstrates BETSOL's commitment to consistent quality across product development, customer support, and service delivery. This standard ensures our processes are designed to meet customer requirements and drive continuous improvement.
HIPAA
Zmanda Pro supports HIPAA-regulated environments by providing AES-256 encryption for data at rest and in transit, role-based access controls, immutable backups, and detailed audit logging to safeguard sensitive healthcare data. Zmanda also executes business associate agreements (BAAs) with healthcare customers to support HIPAA-compliant backup and recovery environments.
PCI DSS
BETSOL maintains PCI DSS compliance to support customers handling payment card data. Our security controls including AES-256 encryption, role-based access control, and comprehensive audit logging meet the requirements for protecting cardholder data in backup and recovery environments.
How Zmanda Pro protects your data
Here's how Zmanda Pro protects your data at every layer.
Data encryption
All data is encrypted at rest using AES-256 and in transit using TLS 1.3, meeting HIPAA and PCI DSS encryption requirements.
For: Healthcare, finance, and any organization handling sensitive customer data.
Immutable backups
Time-locked backups that cannot be modified or deleted even by administrators until retention periods expire, providing verified ransomware protection.
For: Organizations concerned about ransomware or insider threats.
Bring your own encryption keys (BYOK)
Maintain complete control over your encryption keys with zero-knowledge architecture, ensuring Zmanda never has access to your unencrypted data.
For: Enterprises with strict data sovereignty or zero-trust requirements.
Air-gapped backup support
Fully offline, self-hosted deployments that require no internet connectivity for organizations requiring physical isolation from network-based threats.
For: Government agencies, defense contractors, and critical infrastructure.
Role-based access control (RBAC)
Granular permissions ensure users access only what they need, with full audit logging exportable to your SIEM.
For: Teams needing audit trails for compliance or internal security policies.
Flexible data residency
Choose Zmanda-managed cloud (US, EU, APAC regions), connect your own S3-compatible storage, or deploy fully on-premises—your data stays where you need it.
For: Multinational organizations or those bound by GDPR, data localization laws, or internal policies.
Documentation for your security review
Access security documentation and legal agreements for your vendor assessment.
Why security teams trust Zmanda Pro
Years of enterprise
data resilience
Up to
TCO savings
Industry average Net
Promoter Score
FAQs
Got a question that you need an answer to asap?
Call Us
888-495-2632 (US)
408-732-3208 (INTL)