Skip to main content
NEOGOV logo

NEOGOV

Regulatory evidence

NEOGOV is a AI-enabled government software company that provides a one-stop HR suite for the public

NEOGOV against third-party requirements

For each regulation, how many of the requirements it places on your vendors NEOGOV’s public evidence reaches. Open one for every item with its date and source.

Documents on the trust centre

What the vendor lists, typed; public items can be read now, the rest are available on request.

6 documents listed on NEOGOV’s trust centre

trust.neogov.com
  • Architecture or data-flow diagram
    • Power_Details_Architecture_Diagram.pdfon request · seen 21 Sep 2026
  • SOC 2 bridge letter
    • NEOGOV SOC2 Bridge Letter - July 2026on request · seen 21 Sep 2026
  • Penetration test report
    • NEOGOV-2025-Penetration-Test-Redacted-Summary.pdfon request · seen 21 Sep 2026
  • Security questionnaire (SIG, CAIQ, HECVAT)
    • NEOGOV_Cloud_HECVAT411_2026_01_27.xlsxon request · seen 21 Sep 2026
  • SOC 2 report
    • PowerDetails SOC 2 Type 2 Report 2026.pdfon request · seen 21 Sep 2026
  • Accessibility conformance report (VPAT)
    • Governmentjobs & SchoolJobs VPATon request · seen 21 Sep 2026

What the vendor says

Answers the vendor publishes to questions buyers ask, quoted with the link to where it says so.

  • Where data is hosted or processed

    Where is customer data stored and hosted?

    Customer data is stored across a combination of secure cloud and colocation infrastructure within the continental United States: - Amazon Web Services (AWS) - Equinix Data Centers - Microsoft Azure - These providers offer high availability and strong physical and environmental protections.

    Regions named: USas of 21 Sep 2026Source

  • Where data is hosted or processed

    Where is the data stored?

    NEOGOV utilizes a combination of highly secure facilities, including AWS GovCloud and Equinix Co-Location Datacenters. Physical Security: These facilities provide 24/7 monitoring, trained security guards, and advanced environmental controls (fire suppression, UPS, etc.).

    as of 21 Sep 2026Source

  • Encryption

    Do you encrypt data at rest and in transit?

    All customer data is encrypted using industry best practices: - In Transit: Enforced TLS 1.2 or higher - At Rest: AES-256 encryption, using FIPS-compliant, NIST-certified modules NeoGov uses encryption for emails, API connections, file transfers (SFTP), and database storage. Encryption keys are securely managed and rotated per policy.

    as of 21 Sep 2026Source

  • Encryption

    Does the NEOGOV Cloud platform require agencies to encrypt their own documents?

    No. Agencies do not need to manually encrypt documents before uploading them to the platform. The NEOGOV infrastructure automatically handles encryption at rest and in transit using the standards mentioned above.

    as of 21 Sep 2026Source

  • Encryption

    Can I provide my own Encryption Keys?

    No. Agencies cannot provide their own encryption keys.

    as of 21 Sep 2026Source

All articles

This maps third-party obligations to the vendor evidence that may support them. It is not legal advice and never a statement that a vendor or its customers comply; confirm scope and sufficiency with your counsel or auditor. “No public evidence” means nothing public was found at the last check. Citations link to the official text.