Peek Inside Treasure Data’s Security Approach for 2+ Billion Customer Profiles
Last updated June 10, 2025There are over 8 billion people across the world, and over half of them are consumers. Of those over 4 billion consumers, more than 2 billion have profiles managed through Treasure Data’s platform. That’s 1 in 4 people globally. For Treasure Data, safely managing that data is a massive responsibility we take very seriously every day.
“With great power comes great responsibility.” – Uncle Ben, Spider-Man
It starts with the right mindset
We talk about the 2 billion customer profiles managed in our CDP a lot. And we know that, as customers ourselves, our profiles are included in that number. So we have a vested interest in the security of that data, and we treat it with the seriousness it deserves – never compromised, never lost, never overlooked.
Aisha Khan, CIO and Chief Information Security Officer (CISO) at Treasure Data, explains how we build trust into every layer of our company culture.
“We don’t want to be a company that does bare minimum security. Many people think compliance equals security, so they will only go and chase compliance frameworks. Compliance does not equal security. It can help you on your journey, but having a comprehensive security strategy is the key.”
How we keep your customer data safe and secure
It’s not enough to say we keep 2 billion customer profiles secure. Treasure Data walks the walk. It starts with having the right mindset, but equally important is having the right frameworks, protocols, and processes in place, including trustworthy AI.
Let’s look at three broad areas – security and privacy, AWS infrastructure, and trustworthy AI – in a little more depth.
Area 1: Security and privacy
With the safety and security of our operations and data a top priority, we follow some of the most stringent security and privacy protocols available. For example, Treasure Data meets a broad range of the certifications required by global enterprise customers, including ISO/IEC 27001, SOC 2 Type 2, HIPPA and ISO/IEC 27701 etc.
But it doesn’t stop there. At Treasure Data, we take a comprehensive approach that spans security, privacy, responsible AI, and data governance. Learn more in our Trust Center.
Area 2: AWS partnership
Treasure Data is a proud partner of Amazon Web Services (AWS). We are an AWS Advanced Technology Partner Independent Software Vendor (ISV) and have achieved various competencies that demonstrate our deep partnership.
The Treasure Data CDP is built on an AWS technical infrastructure bedrock, giving it the benefits of all of AWS’s policies, architecture, and operational processes. It gives us the flexibility and agility to manage security with confidence.
Ronak Shah, Principal Architect at AWS, shared how seriously we take security:
“So at AWS, we lead with security. We say, security is job zero. And Treasure Data’s team demonstrated that day in, day out.”
Area 3: Trustworthy AI
Treasure Data believes that AI is the future. It gives our customers superhuman powers, and we’re on a mission to incorporate AI into every part of our platform.
But with that mission comes important questions and things to consider, especially in terms of security and compliance. How do we ensure the AI can be trusted with our customers’ customer data?
For starters, when building AI capabilities, we include controls to ensure AI behaves ethically, legally, and within the scope of your business policies. In addition, our AI-native approach minimizes the reliance on third-party AI tools. This reduces the risk of data spillage.
Second, we choose to partner with AWS and build our own AI Agent Foundry on top of Amazon Bedrock. This partnership ensures that our AI solutions are not only powerful but also trustworthy and secure.
Finally, we believe in transparency by design. We’re building toward a future where every action is traceable, explainable, and auditable. Our users will always understand how their AI agents operate.
Wrap-up: We take trust seriously, but don’t take our word for it – see it for yourself
To earn the trust of over 2 billion consumers, we have to hold ourselves to a higher standard. Trust isn’t given, it’s earned. And we work hard to earn that trust every day, in every line of code, every security protocol, and every product decision we make.
In everything we do, we act with that trust in mind, and we invite you to get in touch to learn more.