Skip to main content
Verint logo

Verint

Regulatory evidence

Close the AI outcomes gap with the Verint Open

verint.comLast verified 21 Sep 2026

Verint against third-party requirements

For each regulation, how many of the requirements it places on your vendors Verint’s public evidence reaches. Open one for every item with its date and source.

Documents on the trust centre

What the vendor lists, typed; public items can be read now, the rest are available on request.

11 documents listed on Verint’s trust centre

trust.verint.com
  • AI policy or governance framework
    • Calabrio AI Principlespublic · seen 21 Sep 2026
  • Architecture or data-flow diagram
    • Calabrio ONE AI Data Flow Diagramon request · seen 21 Sep 2026
  • Data processing agreement
    • Calabrio DPA for EULA (Cloud) (rev 07232025)on request · seen 21 Sep 2026
  • Cyber insurance certificate
    • Calabrio Certificate of Insurance 2026on request · seen 21 Sep 2026
  • ISO certificate
    • Calabrio ISO 27001 Certificateon request · seen 21 Sep 2026
    • Calabrio ISO 42001 Certificateon request · seen 21 Sep 2026
  • ISO 27001 statement of applicability
    • Calabrio ISO 27001 SOAon request · seen 21 Sep 2026
  • PCI DSS attestation of compliance
    • Calabrio PCI DSS 4.0 Attestation of Complianceon request · seen 21 Sep 2026
    • Calabrio PCI DSS 4.0 SAQ-Don request · seen 21 Sep 2026
    • Calabrio PCI-4 Responsibilty Matrixon request · seen 21 Sep 2026
  • SOC 2 report
    • Calabrio SOC2 Type II Audit Reporton request · seen 21 Sep 2026

What the vendor says

Answers the vendor publishes to questions buyers ask, quoted with the link to where it says so.

  • International data transfers

    How do we ensure data protection when transferring data outside the EU/EEA?

    When we transfer personal data outside the EU/EEA, we rely on Standard Contractual Clauses (SCCs) to ensure that your data remains protected according to the highest privacy standards. SCCs provide clear contractual obligations for data protection, ensuring that appropriate safeguards are in place when data is transferred outside the EU/EEA, in full compliance with EU and UK data protection regulations.

    Regions named: EU, UKas of 21 Sep 2026Source

  • International data transfers

    Do we provide Data Privacy Impact Assessments (DPIAs) or Transfer Impact Assessments (TIAs) for our Products and Services?

    The responsibility for conducting a DPIA or TIA lies with the data controller. Calabrio acts as a data processor when providing its products and services to customers. However, Calabrio will assist the customer, as needed, by providing the relevant information to help them complete a DPIA or TIA.

    as of 21 Sep 2026Source

  • International data transfers

    For what purpose will a Customer’s personal data be transferred to a third country?

    This is described in Calabrio’s DPA under Schedule 1 - “Description of Processing”.

    as of 21 Sep 2026Source

  • International data transfers

    Does the Solution result in the transfer of personal data to a country outside of EU/EEA

    Please refer to Calabrio’s list of sub processors, which can be accessed via My Trust Center.

    as of 21 Sep 2026Source

  • International data transfers

    What transfer mechanism do we rely on when transferring personal data to a third country?

    Calabrio relies on EU Standard Contractual Clauses (2021/914/EU) when transferring data to a third country.

    Regions named: EUas of 21 Sep 2026Source

  • Use of customer data to train models

    Is customer data used to train AI models?

    Interaction Summary/AutoQM/Sentiment/Custom Tags : Customer data is not used for training the generic ML models. AWS Bedrock LLM calls are stateless and do not use or store customer data for model improvement. Trending Topics : We use customer-specific concepts (keywords, direct transcripts) to train the model to detect topics.

    as of 21 Sep 2026Source

All articles

This maps third-party obligations to the vendor evidence that may support them. It is not legal advice and never a statement that a vendor or its customers comply; confirm scope and sufficiency with your counsel or auditor. “No public evidence” means nothing public was found at the last check. Citations link to the official text.