Security at Sparrow

Sparrow utilizes enterprise-grade best practices to ensure our customer’s security.

Our security commitment

At Sparrow, customer trust is our top priority.


We maintain the highest standards of data privacy and security because we know your employee data is important to keep secure. Sparrow undergoes regular penetration testing and security reviews, and encrypts data at rest and in transit.


Our customers entrust sensitive data to our care. Keeping it secure is our promise.


The Sparrow Team


Application Security

We make sure our security practices don’t only meet industry standards, but set them.

Data Encryption

Data is encrypted in-transit using bank-grade TLS 1.2. Data is encrypted at-rest.


Data Permissions & Authentication

Access to customer data is limited to authorized employees who require it for their job and data access is logged.


SOC 2 Type II

Sparrow is SOC2 Type II compliant. Sparrow has been audited by an independent firm who has confirmed that Sparrow meets the requirements set forth in TSP section 100, 2017 Trust Services Criteria for Security, Confidentiality, and Availability.


Incident Response

Security breaches will be communicated within 72 hours, and vulnerabilities are fixed ASAP.


Enterprise Ready Compliance

SOC 2 Type II

Sparrow is SOC2 Type II compliant. Sparrow has been audited by an independent firm who has confirmed that Sparrow meets the requirements set forth in TSP section 100, 2017 Trust Services Criteria for Security, Confidentiality, and Availability.


Ongoing Commitment
to Security

Penetration Tests

Sparrow works with industry leading security firms to perform annual network and application layer penetration tests.


Employee Trainings

Security is a company-wide endeavor. All employees complete an annual security training program and employ best practices when handling customer data.


Secure Software Development

Sparrow utilizes a variety of manual and automatic data security and vulnerability checks throughout the software development lifecycle.


Security Team

Sparrow employs staff responsible for reviewing, updating, testing and maintaining our security and privacy policy.


Sparrow Responsible Disclosure Policy

Data security is a top priority for Sparrow, and Sparrow believes that working with skilled security researchers can identify weaknesses in any technology. If you believe you’ve found a security vulnerability in Sparrow’s service, please notify us; we will work with you to resolve the issue promptly.

Read Our Security Policy

Still have questions about
Security at Sparrow?

Contact Our Security Team