Security and Compliance

The most secure platform trusted by over 13,000 customers

Enterprise Grade Security

The protection and reliability of customer data are paramount concerns for Qualtrics. No other research technology comes close to Qualtrics’ level of platform security, a key reason why Qualtrics is trusted to secure some of the most sensitive data handled by government agencies, academic institutes, and other large organizations across the world.

Qualtrics is certified against several key standards, including ISO 27001, HITRUST, and FedRAMP—but they are more than just certifications.

Our high-security standards represent our commitment to the total protection of our clients’ data. We continually invest our resources into staying ahead of the latest threats and we are constantly finding new ways to enhance platform security.

Our highly configurable data privacy controls put you in control of your data, allowing you to determine exactly what can and can’t be available to users within your organization. From preventing respondents from providing the potentially sensitive information to restricting respondent contact information to need-to-know individuals, Qualtrics’ data privacy features ensure that your research data is protected from all potential threats. Our powerful administrative and governance controls, built to serve true enterprise-grade research at scale, ensure that your data quality and security are at the absolute maximum standard that you expect. Manage data privacy, compliance, and user access through a simple interface that enables any user to be a true security expert.

Qualtrics is certified against the following standards: Platform + FedRAMP + ISO 27001 + ISO 27017 + ISO 27018 + HITRUST + Cyber Essentials + Privacy Shield Data Centers + SSAE18/SOC2 Type 2 + ISO 27001

Built-in Features for Accessibility

We are committed to providing and developing, where applicable, on-demand enterprise applications that are accessible to all individuals. To help meet our goal of universal design, we follow the internationally recognized best practices in Section 508 of the Rehabilitation Act and the Web Content Accessibility Guidelines (WCAG) 2.0 Level AA to the extent possible. We have WCAG documentation available and can supply such documentation in the event necessary. The platform automatically notifies users if their surveys do not meet web accessibility standards via the accessibility advisor. We enable our customers to ensure that the feedback surveys they develop are WCAG compliant through our ExpertReview, which notifies authors of any non-compliant elements.

With ExpertReview, the platform can perform a check to ensure surveys meet web accessibility standards. Customers can also configure publishing permissions, including disabling the ability for users to deploy non-accessible surveys or requiring reviews of all surveys to ensure they meet your high standards of accessibility and branding.