Built to pass the review before it starts.
Reena is ISO/IEC 27001 certified, handles data to GDPR and PDPA standards, and runs on Microsoft Azure with regional hosting, single sign-on, granular permissions and a full audit trail. Hiring data is sensitive; the platform is built like it knows that.
The claims your auditors can check themselves.
Certification is the difference between a security page and a security posture: ISO/IEC 27001 means an external auditor has examined how we build, run and protect the platform, and keeps examining it.
| Standard | What it covers | Status |
|---|---|---|
| ISO/IEC 27001 | Information security management across the organisation and the platform, independently audited | Certified · view certificate |
| GDPR | Lawful processing, data-subject rights, deletion workflows and consent records for candidates in Europe and beyond | Compliant data handling |
| PDPA | Personal data protection for Singapore and Sri Lanka, alongside UAE data law for Gulf operations | Compliant data handling |
| Microsoft Azure | Enterprise cloud infrastructure with monitored uptime, encryption at rest and in transit, and regional deployments | Production platform |
Enterprise controls, on by design.
The controls IT teams ask about in procurement are not enterprise extras bolted on later: they are how Reena works for every client.
Single sign-on
Google Workspace, Microsoft Entra ID or any OpenID Connect provider. Your team signs in with the work account they already use, governed by your identity policy.
Roles & permissions
Granular, customisable roles decide who sees and does what, down to programmes and departments. Hiring managers see their roles, not your whole pipeline.
Audit trails
Activity is recorded across applications, documents, e-signatures and settings, so every change has an author, a time and a history you can produce on request.
Data protection
Encryption in transit and at rest, AES-256 for connected calendar credentials, signed webhooks, rate limiting, and calendar access limited to free/busy status only.
AI in hiring is a responsibility
before it is a feature.
Hiring decisions affect people's lives, so a human stays in control of every one. This is the commitment Reena is built on, and the reason our clients can defend their process to candidates, hiring committees and regulators.
You set the rules.
Reena screens, interviews and progresses candidates on requirements your team defines. It does not improvise, and it applies the same rules to the first application and the ten-thousandth.
Every decision is shown.
Each recommendation records the signals that lifted a candidate and the ones that held them back. There is no score without reasoning attached.
You make the call.
Every AI recommendation can be reviewed, adjusted and overridden by your recruiters. No candidate is rejected by a machine alone.
Your data trains no one.
AI runs on Microsoft's enterprise Azure AI services. Candidate data is processed to evaluate candidates for you, not to train public models.
Ready for what regulators ask next.
Oversight, explainability and the right to override are the exact properties AI regulation is converging on. Teams on Reena are already operating that way.
AI at the scale of a thousand applications, under the control of one recruiter's judgement.
Bring your IT and security teams to the first call. The certificate is public, the DPA is ready, and the questions they will ask are answered in this page's language, not in ours.