Skip to content
Security

Finance-grade trust, built in from line one.

Omnia handles the numbers companies use to run themselves. We take that seriously — every data-handling, access, and change decision is treated as a security decision.

Encryption everywhere

AES-256 at rest, TLS 1.3 in transit. Tenant-level keys managed through a dedicated KMS with key rotation every 90 days.

Identity & access

SSO / SAML out of the box, optional enforced MFA, role-based access down to line-items, and SCIM provisioning.

Audit-grade logs

Immutable append-only audit log. Every read, write, and AI response is logged with actor, IP, and provenance. Export via API.

Data ownership

Your data is yours. We do not use it to train models. Export any dataset at any time. Deletion within 30 days of offboarding.

Resilience

Multi-region deployment, point-in-time recovery up to 35 days, 99.95% uptime SLA on Business tier and above.

Compliance

SOC 2 Type II audit underway. GDPR-ready. Annual penetration tests by an accredited third party.

Want our security package?

We maintain a current trust package including our SOC 2 report (upon completion), data processing addendum, subprocessor list, and vendor questionnaire answers. Request it and we'll share under NDA.

Request security package