Certifications and Policies


At Germain Software, we are committed to the highest standards of data protection, operational integrity, and information security. We are pleased to announce that Germain Software has successfully achieved HITRUST and SOC 2 Type II certification.

This certification reflects our continued dedication to maintaining robust controls aligned with the Trust Services Criteria for security, availability, and confidentiality across our systems and services.

HITRUST Certified

A leading U.S.-based healthcare organization has relied on GermainUX for over eight years and is expanding its adoption across mission-critical systems. With HITRUST compliance now required, GermainUX continues to raise the bar on security, privacy, and enterprise readiness—supporting even the most regulated industries with confidence. This accomplishment was again made possible through the diligent efforts of our compliance team.

r2 HITRUST Badge_Stacked Outline.png
Hitrust audit successfully completed on


SOC 2 Type II Certified

Achieving SOC 2 Type II certification involved a rigorous assessment process, including a comprehensive audit and verification of our internal controls. This accomplishment was made possible through the diligent efforts of our compliance team.

Soc2Type2CertificationByComSec.png
SOC2 audit successfully completed on - Germain UX

Audit Transparency

We prioritize transparency and accountability in our operations. Our most recent audit confirms our full compliance with SOC 2 Type II and HITRUST requirements. We extend our thanks to AssuranceLab and Prescient Security for conducting a thorough and professional audits.


Screenshot 2026-07-09 072015-20260709-142015.png
Thank you Sensiba helping us pass our SOC2 R2 Audit - Germain UX


Security Policies

Our information security policies are centrally managed and regularly updated through our Drata Trust Center to ensure alignment with industry best practices and regulatory requirements.

To request access to our SOC 2 Type II and HITRUST reports, please follow the designated link or contact our reach out to our Security and Compliance team at security@germainux.com.

Our Compliance Partners

We are proud to work with industry-leading organizations that support our ongoing commitment to compliance and security:

  • AssuranceLab & Sensiba – Independent audit and SOC 2 attestation

  • Prescient Security – Independent audit and HITRUST attestation

  • Com-Sec – Compliance readiness and advisory services

  • Drata – Security policy management and trust center platform



Service: Management

Feature Availability: 2024.3 or later