About BAIAN Baian is an AI solutions company that specializes in building simple, fully custom services to connect AI with businesses.
Security & Compliance Security is at the core of everything we do. Baian operates on industry-leading platforms and uses top-tier software and vendors to ensure the highest standards of protection.
We are actively pursuing ISO 27001 and HIPAA compliance. All data is processed and stored in the USA, with 100% of our team based in the USA—no overseas operations, no third-party handling abroad.
Founded in 2025
Here are the controls implemented at BAIAN to ensure compliance, as a part of our security program.
Situational Awareness For Incidents
Vulnerability Remediation Process
Centralized Management of Flaw Remediation Processes
Identity Validation
Termination of Employment
Encrypting Data At Rest
Inventory of Infrastructure Assets
Data Backups
Testing for Reliability and Integrity
Transfer of PII
Choice & Consent
Impact analysis
Limit Network Connections
External System Connections
Transmission Confidentiality
Anomalous Behavior
Capacity & Performance Management
Data used in Testing
Centralized Collection of Security Event Logs
Conspicuous Link To Privacy Notice
Approval of Changes
Login Sessions
Malicious Code Protection (Anti-Malware)
Code of Business Conduct
Organizational Structure
Roles & Responsibilities
Competency Screening
Personnel Screening
New Hire Policy Acknowledgement
Security & Privacy Awareness
Performance Review
Periodic Policy Acknowledgement
Automated Reporting
Incident Reporting Assistance
Risk Framing
Risk Assessment
Fraud
Third-Party Criticality Assessments
Assigned Cybersecurity & Privacy Responsibilities
Internal Audit using Sprinto
Periodic Review & Update of Cybersecurity & Privacy Program
Management Review of Org Chart
Management Review of Risks
Management Review of Third-Party Risks
Subservice organization evaluation
Segregates Roles and Responsibilities
Subprocessor Requirements
Data Protection Impact Assessment (DPIA)
Testing
Customer Obligations
Retention of Policies
Chief Privacy Officer (CPO)
Privacy Act Statements
Asset Ownership Assignment
Data Governance
New Hire Security & Privacy Training Records
Periodic Security & Privacy Training Records
Updates During Installations / Removals
Inventory of Endpoint Assets