On assemble votre espace, palier par palier.
End-to-end encryption, logging of every sensitive access, and local compliance across all regions served by Work Level.
AES-256 at rest, TLS 1.3 in transit, secrets isolated in a dedicated vault partitioned by region.
Every access to identifying data is recorded: who, what, when, why — viewable in the audit log.
GDPR in Europe, PIPEDA in Canada, local regulations for the Gulf and North Africa.
Personal data is hosted in the region where it is collected, with residency rules adapted to each local regulatory framework. No identifying data leaves its region of origin without an explicit legal basis.
While a profile is anonymised, only Work Level's internal HR team can access identifying information, strictly for validation and matching purposes. A company or candidate only sees the other party's identity after explicit mutual agreement.
The infrastructure undergoes regular third-party security audits, and the privacy policy is reviewed at every regulatory change in the regions covered.