Security
AES-256 always. End-to-end when the meeting needs it.
Cloud recording, live transcription and phone dial-in require end-to-end off. Hosts are trained. We do not invent a data region the maker does not operate.
The mailbox sits where you put it.
TLS on the web and on SMTP. SPF, DKIM and DMARC published before we cut over, so other people’s servers have a reason to trust the domain. Lockout, anti-virus, a tight host firewall, two-factor on webmail and on the admin pages. Legal hold as licensed.
Mailbox data lives on your servers, or in the cloud region you choose. We do not move it to a country that looks good on a slide. Signed and encrypted mail is there where you issue certificates — we do not invent a certificate desk.
Meetings
Zoom is honest about residency. So are we.
AES-256 in transit and at rest. Waiting rooms, passcodes, lock. Optional end-to-end for the meetings that need it. Company login for staff, so a meeting is not a personal Zoom account that walks out with a leaver.
Meeting data is processed where Zoom operates. Transfer safeguards cover the rest. We will not promise a Zoom region that does not exist. Hosts are trained: recording, live transcription and phone dial-in need end-to-end off. That choice is made in the meeting, not hidden in a policy nobody read.
Questions we hear
Can every Zoom meeting be end-to-end encrypted?
You can turn it on when the meeting needs it. Recording, captions and phone dial-in will not work in that mode. AES-256 is always on.
Where does mailbox data sit?
On your servers, or in the cloud region you choose. That is a decision before install, not after.
Where does meeting data sit?
Where Zoom operates, with transfer safeguards. We do not invent a local Zoom region.
Tell us where the mail should live.
Your servers, the cloud, or both. We install, move people across, and stay on the night phone.
Talk to us