Is Aisera SOC 2 compliant? Yes, SOC 2 Type II plus ISO 27001.
Aisera undergoes a SOC 2 Type II audit and holds ISO/IEC 27001 and CSA STAR Level 1, and complies with GDPR, HIPAA/BAA and CCPA, as listed on its TRAPS trust framework. ISO 27001 is the accepted secondary certification alongside SOC 2 on this site, so Aisera passes all seven of the seven criteria even though it does not yet disclose ISO/IEC 42001, the AI management standard. Aisera is now part of Automation Anywhere, following the acquisition that closed in November 2025.
Source: aisera.com TRAPS trust framework (SOC 2, ISO/IEC 27001, CSA STAR Level 1, GDPR, HIPAA/BAA, CCPA) and the acquisition announcement (Nov 2025). Editorial vetting, not a compliance certification; verify directly before purchase.
Aisera ownership, certifications and data handling, in detail
Is Aisera owned by Automation Anywhere?
Yes. Automation Anywhere announced it had completed the acquisition of Aisera on 4 November 2025, uniting Aisera's self-service AI agents for IT service management, HR and customer service with Automation Anywhere's automation platform. Aisera continues under its own brand within Automation Anywhere. In practice its standalone security-and-compliance and customer-stories pages now redirect to Automation Anywhere resources, so cite the current parent security documentation when the Aisera pages have moved. Aisera was founded in 2017 by Muddu Sudhakar, and Abhi Maheshwari is chief executive, so the team criterion is met.
Which certifications does Aisera hold, and why is it 7 of 7 without ISO 42001?
Aisera holds SOC 2 Type II and ISO/IEC 27001, plus CSA STAR Level 1, and complies with GDPR, HIPAA/BAA and CCPA, as published on its TRAPS trust and responsible-AI framework. It does not currently disclose ISO/IEC 42001, the AI management system standard. On this site the security criterion requires SOC 2 plus one relevant secondary certification, and ISO 27001 satisfies that requirement, the same rule applied to other listed vendors that hold ISO 27001 rather than ISO 42001. Adding ISO 42001 would strengthen the AI-governance evidence but is not required to pass the bar.
Does Aisera train its AI models on my data?
No. Aisera's TRAPS framework states that it does not retain your data and does not use your organization's data to train other customers' models, and that users are given the option to provide consent or opt out. Terms are governed by the Data Processing Agreement, so teams with strict data-use requirements should confirm the specifics in their DPA before deployment.
Who uses Aisera?
Aisera's publicly named enterprise customers include McAfee, which its own case study reports achieved roughly ten million US dollars in savings through ticket deflection, along with Chegg and 8x8. Aisera's self-service agents are used across IT service desk, HR and customer-service use cases. Verify the current reference set directly, as some case-study pages moved to Automation Anywhere after the acquisition.
Sources: aisera.com TRAPS, Automation Anywhere + Aisera acquisition, McAfee case study. Editorial vetting, not a compliance certification; verify directly before purchase.
Aisera
7/7 criteria7-Criterion Scorecard
Public Reference Customers
- ✓McAfee[aisera.com]
- ✓Chegg[www.featuredcustomers.com]
- ✓8x8[www.featuredcustomers.com]
Data Residency and Training Opt-Out
Regions: US
Training opt-out: Yes, available
Retention: Aisera states it does not retain customer data or use it to train other customers' models; terms per DPA
aisera.com/traps/Outcome Accountability
Model: Ticket-deflection and accuracy benchmarks
Published deflection and accuracy benchmarks (vendor-claimed)
aisera.com/platform/Time in Market
Founded: 2017
Customers (min triangulated): 200+
Team Composition
Founders: Muddu Sudhakar
aisera.com/For detailed pricing and comparison data for IT Service Desk/Customer Service vendors, see Service Desk Agents reference.