Security, Governance & Trust

Enterprise grade security, privacy, and governance for immersive and AI powered learning in regulated and high stakes environments

A woman standing in a light grid, with blurred people walking around her indicating motion
  • Medtronic
  • Accenture
  • Lantheus
  • Microsoft
  • BCA Finance
  • Mastercard
  • Scoot
  • Maersk
  • CameronLNG White
  • Rock Central
  • MOODY'S

Overview

Security and privacy engineered for enterprise operations.

Protect what matters.

Enterprise grade security for AI roleplay, XR training, and frontline workflows across Cicero, TeamworkAR, and your integrated systems.

Collect only what you need.

Data minimizing designs limit the personal information we use and keep learning content separate from back end telemetry.

Stay regulation ready.

Practices aligned with GDPR, CCPA, PIPEDA, SOC 2, ISO 27001, and emerging AI governance standards.

Built for regulated industries.

Trusted by healthcare, life sciences, financial services, and other high stakes environments where compliance and safety come first.

Certifications & frameworks

Built on leading security and privacy standards.

All Partners

  • All
  • CCPA
  • GDPR
  • HIPAA (support for HIPAA aligned deployments)
  • ISO 27001
  • ISO 27017
  • ISO 27018
  • ISO 42001 (Pending 2nd Q 2026)
  • PIPEDA
  • SOC 2

GDPR

Data handling practices aligned with GDPR, including data minimization, subject rights, and strict controls on personal data use.

CCPA

Privacy controls and subject rights aligned with CCPA for California residents, including access, deletion, and opt‑out capabilities.

PIPEDA

Data protection practices aligned with Canada’s PIPEDA for collection, use, and disclosure of personal information.

HIPAA (support for HIPAA aligned deployments)

Architectural options, encryption, and access controls designed to support HIPAA‑aligned use cases in healthcare and life sciences when required by our customers.

SOC 2

Controls and monitoring aligned with SOC 2 principles for security, availability, and confidentiality, with documentation available for due diligence.

ISO 27001

Information security management practices informed by and aligned with ISO 27001

ISO 27017

Cloud security controls informed by ISO 27017 to protect workloads and data in multi‑tenant cloud environments

ISO 27018

Cloud privacy controls informed by ISO 27018 for handling personal data in public cloud services.

ISO 42001 (Pending 2nd Q 2026)

AI governance program in progress, following ISO 42001 guidance for responsible, auditable AI systems.

TESTIMONIALS

Security and compliance that meet enterprise scrutiny.

  • Cicero has transformed our training programs while maintaining the highest standards of security and compliance.

    Director of Training
    Medtronic North America
  • By combining CGS Immersive’s public cloud with our private cloud, we gained the scalability of AI and XR training while keeping strict control over sensitive data.

    Medtronic case study
  • We hold ourselves to the same standard we promise our clients: secure by design, governed in practice, and constantly tested in the real world so innovation never outpaces control.

    John Samuel
    COO, CGS

Frequently asked questions

Your security and privacy questions answered.

Award-winning immersive experiences

Recognized globally for real-world impact