Legal & Governance
Version v3.1
β Effective: January 1, 2026
Compliance Standards & Certifications
Last Reviewed & Updated: July 26, 2026
Regulatory compliance frameworks supported by Nexura custom software, including SOC2 Type II, ISO 27001, HIPAA, GDPR, and PCI-DSS.
### 1. HIPAA Compliance for Healthcare
Our telemedicine patient portals and medical database applications enforce AES-256 encryption, audit logging, and automated session timeouts.
### 2. SOC 2 Type II & ISO 27001 Controls
We implement strict continuous integration security testing, automated dependency scanning, and isolated multi-tenant database partitions.
Our telemedicine patient portals and medical database applications enforce AES-256 encryption, audit logging, and automated session timeouts.
### 2. SOC 2 Type II & ISO 27001 Controls
We implement strict continuous integration security testing, automated dependency scanning, and isolated multi-tenant database partitions.
Have Questions About This Policy?
Our legal and compliance team is available for custom vendor questionnaires and DPA reviews.
Email Legal Team β