Status: Aligned. Wentzel Investments LLC implements controls for SOC 2 Type 2 + ISO/IEC 27001:2022 but has not yet completed third-party audits. We use "Aligned" never "Compliant" or "Certified".
Information Security Policies
The written policies below cover the Wentzel Investments LLC information security program. Canonical versions live in the Confluence COMP space with formal review cadence, version history, and approval records. Customers under NDA can request a complete policy pack from security@wentzel.ai — the customer portal holds request instructions, not self-serve downloads.
Static fallback: the Confluence registry for this list is not set up yet, so this is the hand-maintained list.
| Policy | Last updated |
|---|---|
| Information Security Policy | — |
| Acceptable Use Policy | — |
| Access Control Policy | — |
| Change Management Policy | — |
| Incident Response Policy | — |
| Data Classification Policy | — |
| Vendor Management Policy | — |
| Business Continuity Policy | — |
| Disaster Recovery Policy | — |
| Security Awareness Training Policy | — |
| Privacy Policy | — |
Review cadence
Each policy is reviewed annually at minimum, plus after any material architecture change. Approval and next-review dates are tracked on each canonical Confluence page. Material changes propagate to all in-scope repos via the WCB program.