How does Anaplan handle data security and compliance?

Anaplan places a strong emphasis on data security and compliance to ensure the protection and privacy of user data, given its position as a leading cloud-based platform, used by thousands of organisations around the world.

Here are a few examples:

  • Data encryption: Anaplan employs encryption techniques to secure data both at rest and in transit. Data in transit is encrypted using industry-standard encryption protocols (TLS/SSL), while data at rest is stored in encrypted form. This ensures that sensitive data is protected from unauthorised access.
  • Access controls: Anaplan provides robust access controls to ensure that only authorised users can access and manipulate data within the system. User access can be configured based on roles, responsibilities and specific data permissions, ensuring that data is accessed and used only by individuals who require it.
  • Authentication and user management: Anaplan supports various authentication methods, including single sign-on (SSO), to verify user identities and ensure secure access. User management features enable administrators to define and enforce strong password policies, implement multi-factor authentication (MFA), and manage user access rights.
  • Auditing and activity logs: Anaplan maintains detailed audit logs that capture user activities and system events. These logs help track changes, monitor user behaviour, and enable organisations to investigate and identify any potential security issues or compliance breaches.
  • Data governance and compliance: Anaplan supports compliance with various data protection and privacy regulations, including but not limited to GDPR (General Data Protection Regulation) and CCPA (California Consumer Privacy Act).
  • Regular security assessments: Anaplan regularly conducts security assessments, including vulnerability assessments and penetration testing, to identify and address potential security vulnerabilities. This proactive approach helps ensure that security measures are up to date and effective.
  • Infrastructure and hosting: Anaplan utilises leading cloud service providers, such as Amazon Web Services (AWS) and Google Cloud Platform (GCP), for its infrastructure. These providers adhere to strict security standards and certifications, including ISO 27001 and SOC 2, ensuring a secure hosting environment.
  • Data backup and disaster recovery: Anaplan maintains data backups and has disaster recovery measures in place to minimise data loss and ensure business continuity in the event of a system failure or disruption.
  • Compliance certifications: Anaplan holds several industry certifications, including SOC 2 Type II and ISO 27001, demonstrating its commitment to security and compliance.

You can refer to Anaplan’s website to understand the specific security features, practices, and compliance capabilities relevant to your needs. It’s important to note that while Anaplan provides security measures and tools, organisations also play a role in implementing appropriate security practices, such as user access management and data governance, to maintain a secure environment.

Take the next step

Access the Anaplan Buyer’s Kits

Software Evaluation Checklist

Book a live demo of Anaplan with one of our experts