BostonGene Trust Center
Ensuring the security of patient data and research infrastructure through secure software, multi-cloud environments and network services is foundational to advancing precision oncology in today’s dynamic technological landscape.
Security
Certifications
Certifications
Security
BostonGene has developed a comprehensive security framework aligned with healthcare and life sciences standards. Our approach emphasizes strong governance, supported by robust policies, procedures and technical controls that work together to mitigate risk, prevent unauthorized access and safeguard data at every touchpoint.
We leverage enterprise-grade security solutions to proactively manage vulnerabilities, detect incidents and respond to emerging threats across our infrastructure.
We leverage enterprise-grade security solutions to proactively manage vulnerabilities, detect incidents and respond to emerging threats across our infrastructure.
Privacy
BostonGene is committed to safeguarding the confidentiality and integrity of customer data. We take proactive and reasonable measures to protect it from misuse, loss, interference and unauthorized access, modification or disclosure.
Our data privacy strategy includes:
For more information visit our Privacy Policy and Privacy Practices pages.
Our data privacy strategy includes:
- Restricting logical access to and transferability of sensitive data
- Implementing technical and organizational safeguards to ensure the ongoing integrity, availability and resilience of our systems and services
- Limiting physical access to our data centers
- Anonymizing sensitive information where appropriate
For more information visit our Privacy Policy and Privacy Practices pages.
Compliance
Trust is built through transparency and accountability. BostonGene undergoes rigorous, independent assessments to verify its compliance with leading industry standards–demonstrating our ongoing commitment to secure, reliable and responsible data practices.
Security Certifications
We have achieved certifications under globally recognized security and privacy standards, including:
- ISO/IEC 27001:2022
- SSAE 18 / ISAE 3402 SOC 2 Type 2
- ISO/IEC 27018:2019
Regulations
Our services are built with compliance in mind, aligning with key regulatory frameworks such as:
- GxP
- 21 CFR Part 11
- GDPR
- HIPAA
Contacts
Please submit any questions and concerns to [email protected]
FAQ