Kahua Security and Compliance

Your Trust is Our No. 1 Priority

Upholding our commitment to protecting your data, Kahua meets and exceeds some of the strictest security standards, including FedRAMP and StateRAMP. We help you deliver your construction projects successfully with peace of mind. 

Build Worry-Free

Kahua utilizes encryption (both at rest and in transit) and employs a hardware security module. These security measures have earned Kahua authorization from some of the most stringent entities in the world.

A Gold Standard for Cloud Data Security

Kahua is FedRAMP Authorized

Kahua is designated FedRAMP Moderate and DoD IL-2 Authorized. FedRAMP is a U.S. government program streamlining security assessment, authorization, and continuous monitoring for cloud products. Its best-in-class security framework benefits all entities utilizing construction project management solutions.

Nationally Recognized Data Security Program

Kahua is StateRAMP Authorized

The State Risk and Authorization Management Program (StateRAMP) is a U.S. government program streamlining security assessment, authorization, and continuous monitoring for cloud products. It accelerates secure cloud adoption for state, local and education organizations. 

Trusted Framework for Cybersecurity Excellence
Kahua Fast-tracks CMMC Compliance

The Cybersecurity Maturity Model Certification (CMMC) was introduced by the U.S. Department of Defense (DoD) to enhance the protection of sensitive information within the Defense Industrial Base (DIB). It is designed to safeguard sensitive unclassified information the department shares with contractors and subcontractors. 

Your Trust, Our Reliability

We're Ready When You Need Us

At a 99.998% availability rate, we’re commited to supporting your program and project success. Whenever and wherever.

AICPA SOC 2

Kahua is SOC 2 Compliant

The American Institute of Certified Public Accountants (AICPA) Service Organization Controls (SOC) 2 report assesses and validates controls around security, availability, and confidentiality of customer data.

General Data Protection Regulation (GDPR)

Kahua is GDPR Compliant

GDPR is a privacy and security law which regulates use of personal data and gives EU individuals control over their data.

U.S. Data Privacy Framework (DPF)

Kahua is DPF Compliant

DPF outlines guidelines and regulations governing the responsible collection, processing and protection of personal data to the United States from the European Union, United Kingdom and Switzerland while ensuring data protection is consistent with EU, UK and Swiss law.

California Consumer Privacy Act (CCPA)

Kahua is CCPA Compliant

CCPA provides California residents the right to their personal data, requiring businesses to disclose, delete, correct and allow opt-out options for the use of their information.

Read More About Construction Software Data Security