Secure infrastructure for AI agents
Dremio Security
Dremio is built to secure and protect your data. Integrate with your identity
providers, enforce access controls from storage to individual cells, and encrypt
data – all while meeting compliance requirements.
CERTIFIED SECURITY
Compliance
Dremio maintains leading, globally recognized security certifications with a clear commitment to compliance and data protection. Our Shared Responsibility Model defines exactly what we secure and what you control, ensuring accountability at every level.

SOC II Type 2

ISO 27001:2013

GDPR

CCPA
End-to-End Encryption
Dremio Cloud is secure by design, with end-to-end encryption protecting your data in transit and at rest.


TLS 1.2+ in Transit and AES-256 at Rest

Customer-Managed Encryption Keys

Connection via PrivateLink
ACCESS
Access Control
Set permissions at any level—organization, project, source, folder, or table—and automatically enforce them down to rows and columns.


Role-based Access Control (RBAC)

Fine-Grained Access Control

Hierarchical Permission and Inheritance
SECURITY & ACCESS
Simple Authentication and Identity Management
Integrate with your existing identity provider through OAuth 2.0 and OpenID Connect. Centrally manage users, enforce strong authentication policies, and enable SSO and multi-factor authentication across your organization.

Authentication & Access
Single Sign-On (SSO), Multi-Factor Authentication (MFA), and standards-based authentication with OAuth 2.0 and more.
Identity Provider Integration
Connect with your existing identity provider (Okta, Microsoft Entra ID, Google Identity, and more) with automatic user and group provisioning for streamlined access management.
RESOURCES
Security Resources
Explore Dremio’s Security Resources

Security Documentation
Deep dive into Dremio's security features and implementation guides
