The security of your data is our priority

Our customers trust us with the compensation information of their employees.
We're serious about this duty and have designed our product with top-notch security and privacy measures, including advanced security features and regular checks to ensure privacy.

Security in Europe by design

SOC 2 & ISO 27001

Figures upholds SOC 2 Type 2 & ISO 27001 certifications, in which an independent auditor evaluates the adequacy and efficiency of our controls.


Figures complies with the GDPR regulation so that data is processed in compliance with it.

De-identified data

We exclusively utilise aggregated and de-identified data in our benchmark, refraining from the use of individual identifying information.

European cloud storage

We only store data in Europe, through AWS.

Enterprise-grade security and privacy standards

Security & confidentiality

Figures ensures top-tier security for all users on its platform by providing Single-Sign-On (SSO) authentication, role-based access controls, and in-product data protection. This ensures that you can securely share sensitive compensation information according to the access privileges you define.


Enforced access controls

Figures prioritises confidentiality and adheres to the Principle of Least Privilege.

We do our best for your security

Security Team

Our Security team’s main priority is protecting your data.

Pen testing

Once a year, a pen testing is organised through third-party providers.


Data within Figures is encrypted both in transit and at rest.


Got more questions? If we missed anything, just reach out and we’ll fill you in on all the details.

What data does Figures collect?

Figures collects data related to compensation (including employee name, employee ID, employee email, gender, base salary, variable pay, job title, level, birthday, manager, location). What we collect may depend on the data in the systems that our customers decide to integrate with our products.

Why does Figures collect this data?

Figures requires personal details like name and email to enable functionality across our product suite. This facilitates the linkage of HRIS data, enabling a comprehensive overview of an employee's total compensation package. These details are essential for the proper operation of our products.