World-class data security built into everything we do.

At Neo.Tax, data protection is always top of mind. We know the trust our customers place in us, and we take that responsibility seriously. It’s why we protect your data during every step of building and maintaining our infrastructure, through internal and third-party auditing, and via best-in-class certifications.

World-class data security built into everything we do.

At Neo.Tax, data protection is always top of mind. We know the trust our customers place in us, and we take that responsibility seriously. It’s why we protect your data during every step of building and maintaining our infrastructure, through internal and third-party auditing, and via best-in-class certifications.

World-class data security built into everything we do

At Neo.Tax, data protection is always top of mind. We know the trust our customers place in us, and we take that responsibility seriously. It’s why we protect your data during every step of building and maintaining our infrastructure, through internal and third-party auditing, and via best-in-class certifications.

Abstract network visualization representing AI security

AI Safety

Customer-specific data is strictly anonymized and masked before any AI training or fine-tuning takes place. Moreover, any usage of customer data for training or fine-tuning is optional—clients may opt out entirely with a simple configuration setting.

Neo.Tax’s AI models operate on metadata—such as ticket statuses, timestamps, hierarchies, and assignees—as well as ticket names and descriptions. We never access sensitive content, like source code, birth dates, or social security numbers.

Data Storage and Handling

All data is encrypted in transit (using TLS v1.3 protocols) and at rest (using AES-256 encryption). Neo.Tax offers continuous backups with point-in-time restore functionality for up to 30 days, down to the millisecond, and access is restricted to key personnel on as-needed basis through IAM and VPN firewall policies.

Isometric building blocks representing secure data infrastructure

Authentication and Access Management

Customers can authenticate into Neo.Tax via email/password, magic link, or SSO, which includes support for both SAML 2.0 and OIDC authentication. Neo.Tax works with a variety of Identity Providers (IdPs), including Okta, OneLogin, and Microsoft Entra.

All user sessions are encrypted via TLS v1.3, and idle sessions are automatically logged out after 20 minutes of inactivity.

Secure server with lock icon in cloud environment representing single-tenant hosting

Dedicated Cloud Offering

Neo.Tax offers a Dedicated Cloud deployment option for enterprise customers with heightened security requirements. Each environment is instantiated as a single-tenant Virtual Private Cloud (VPC), ensuring complete segregation of data, compute, and AI models. No infrastructure is shared across tenants—customers operate in fully isolated environments at the network, application, and storage levels.

Application and Endpoint Security

An independent CREST-certified security firm conducts annual third-party penetration tests, as well as SOC 2 and ISO/IEC 27001:2002 audits. Our infrastructure includes continuous vulnerability scanning and timely patch management, with critical updates applied within 24 hours.

All Neo.Tax code undergoes Static Application Security Testing (SAST), and deployments are protected via a Web Application Firewall (WAF) with IP whitelisting. All employee workstations are protected by enterprise-grade antivirus tools, with auto-updates and scheduled scans enforced.

Vendor and Third-Party Risk Management

Neo.Tax evaluates vendors prior to onboarding, maintains documented lists of approved third parties, and enforces contractual obligations that require breach reporting and protection against unauthorized disclosures. We conduct ongoing monitoring and annual reassessments of vendor agreements and compliance reports.

Shield with compliance dashboards representing audit-ready security

Learn more about how Neo.Tax secures customer data

Read our Security Whitepaper

For security questionnaires or additional information, please contact security@neo.tax, or request reports and certifications via our Trust Center.