Safe, secure, and private.

Everything in Mena is designed to keep your care safe, secure and private.
Because your moments of care are nobody else’s business.

Trust center
A clinician speaking with a patient

Enterprise-grade security and controls

Mena is built on a non-negotiable principle: protecting the security and confidentiality of our customers' and patients' data. We've designed our platform from the ground up to safeguard the most sensitive information.

Configurable instant audio deletion. On by default.

Audio can be deleted immediately after processing, so recordings never need to remain stored.

Data Sovereignty and Control

You remain in control of your data, with clear storage boundaries and configurable policies.

Data encryption

All data is encrypted in transit and at rest. Patient data is protected at every stage, from the moment it leaves your device to when it's stored on our servers.

Configurable Data Retention

Retention periods can be configured to reflect your organization's operational and regulatory needs.

No AI Training

Your patient data is never used to train our AI models.

Enterprise-grade features

Role-based access, auditability, and administrative controls support enterprise deployments.

Certified & Compliant

Our security program is aligned with the requirements healthcare organizations rely on.

Independently Tested

Independent experts regularly assess our infrastructure and applications.

Mena is committed to maintaining compliance with healthcare's most rigorous international safety and security standards.

ISO 27001

Fully certified for information security management. Your data is protected by internationally recognized standards for risk assessment, access control, and continuous improvement.

ISO 27001

ISO 42001 Aligned

Actively aligning with international standards for medical device quality management and responsible AI governance.

ISO 42001ISO 13485

GDPR & HIPAA Compliant

Fully compliant with European, US, and Swiss data protection regulations. Covered by data processing agreements.

GDPRHIPAA

Penetration tested

Regular penetration testing conducted in partnership with Cognisys. Independent verification of our security posture across infrastructure and application layers.

Cognisys

FAQs about security

Common questions about privacy, security and compliance

Is Mena safe?

Yes. Mena uses enterprise-grade controls, encryption, independent testing, and a security program designed for sensitive healthcare data.

Where is my data stored?

Data residency is configured for the region and agreement applicable to your organization.

Who has access to my data?

Access is restricted to authorized people and systems and governed by role-based controls.

What are Mena’s default data retention policies?

Retention is minimized by default and can be configured to meet your organization’s requirements.

Are models trained on my data?

No. We do not train our AI models on your patient data.

Do you have consent materials for my patients?

Yes. Contact us and we will provide the materials appropriate for your deployment.

Still have questions?

Talk to us.

Contact usBook a demo