|

Enterprise-Grade Security & Reliability for Construction Teams

Protect project data, ensure uptime, and keep your teams working without disruption.

STACK Certifications & Accreditations

AICPA SOC Compliance Logo

STACK is SOC 2 compliant, with independent audits confirming its security, availability, and data protection controls meet strict industry standards.

BBB Accredited Business Logo

STACK holds an A+ rating from the Better Business Bureau based on trust and reliability standards.

PCI DSS Compliant Logo

STACK is PCI DSS compliant, meeting the industry’s highest standards for securely handling payment data across systems, processes, and infrastructure.

Grade A Security Scorecard

STACK has an “A” rating from SecurityScorecard, reflecting strong performance across key cybersecurity risk categories like network security, patching, and application protection.

Visit our STACK Trust Center for a real-time view of our security compliance, along with detailed technical insights:

Built on Trust. Backed by Data.

Users Worldwide
Completed Takeoffs
Projects
Uptime
Customer Spotlight

No More Catastrophic IT Issues: EWS Switches to STACK

EWS faced ongoing IT failures with PlanSwift that led to a catastrophic data loss with no backup, shutting down operations for nearly two weeks. The outage put roughly $3M in sales at risk and drove their switch to STACK’s cloud-based system. 

Application Availability, Reliability and Security

We understand your business relies on accurate, timely bids, and we’re committed to delivering industry-leading security, availability and reliability. This document outlines the infrastructure and operational best-practices STACK employs to safeguard our customers’ data and achieve our guaranteed 99.9% uptime (subject in all cases to specific terms regarding uptime as set forth in the STACK Terms of Use).

Data Security Protections

STACK hosts customer data with leading cloud providers in secure, redundant environments and enforces strict, role-based access controls. All data is encrypted in transit and at rest, with continuous monitoring for suspicious activity.

/
/

Availability Protections

STACK’s systems are designed for high availability, with infrastructure distributed across multiple data centers to minimize downtime. Redundancy and scalability ensure consistent performance as demand grows.

Reliability Protections

STACK ensures data durability and system reliability through continuous backups, replication, and proactive monitoring. Customers can track performance in real time via the status page.

/

Real-Time Security You Can Trust

STACK’s Drata security report demonstrates continuous, real-time monitoring of our security controls, ensuring we remain audit-ready and aligned with SOC 2 standards.

By automating evidence collection and compliance tracking, Drata provides transparent, up-to-date validation of our commitment to protecting customer data.

Security & Reliability FAQs

STACK is a cloud-native SaaS platform hosted on Microsoft Azure. All customer data is stored within Azure's United States or Canadian data center regions, Takeoff & Estimate or Build & Operate, respectively. Data is continuously geo-replicated between regions within each country to ensure high availability and durability. Document storage provides 99.999999999% durability with soft delete enabled, and application data is maintained in-country geo-redundant storage with automatic replication. In the event of a regional outage, automated failover redirects traffic to the secondary region in under five minutes.

STACK encrypts all sensitive data in transit using TLS 1.2 at minimum with common secure ciphers. STACK also encrypts data at rest using AES-256 equivalent or stronger encryption algorithms, depending on the application, i.e., databases, cloud storage, mobile devices, desktops, and laptops.

STACK leverages Azure's built-in backup and redundancy capabilities to protect customer data. Application data and document storage are continuously geo-replicated between our primary and secondary regions, ensuring near-real-time data protection. Automated backups are performed on a recurring schedule with point-in-time restore capabilities. Backup and recovery procedures are validated as part of STACK's annual SOC 2 Type 2 audit.

STACK guarantees 99.9% uptime for its SaaS offerings (subject in all cases to specific terms regarding uptime as set forth in the STACK Terms of Use). Current and historical uptime can be seen at https://status.stackct.com/.

Yes. STACK leverages, a leading authentication and authorization platform, to provide single sign-on (SSO), two-factor authentication, and identity analytics. STACK's SSO is compatible with a wide range of applications, allowing organizations to integrate new tools and platforms as they evolve. STACK supports both traditional SSO (Takeoff & Estimate) within a single organization and federated SSO (Build & Operate) for cross-organizational collaboration.

STACK's use of container technology allows us to perform deployments that include maintenance changes, bug fixes, security updates, and new features transparently with little to no customer impact multiple times per day, or as needed.

 

Additional Security Resources:

man checks phone and computer for security against data breach
Articles

Data Breach: A Contractor’s Security Guide

  Cyber perpetrators know that the construction industry is behind in data security and privacy initiatives. Data breaches happen due ...
BLOG_Security_Team_Small
Articles

Strengthening Security: Safeguarding Sensitive Information While Enhancing Project Team Management

As construction companies and their projects grow in size and scope, so too does the volume of data generated and ...
BLOG_STACKUp_Data_Security_Small
Articles

How STACK Keeps Your Data Secure

STACK safeguards your construction data: we are SOC 2 compliant, have Auth0 authentication, and conduct independent security evaluations.

Get Started Today!

The best way to see how STACK solutions can help your business is to see them in action.
BBB Accredited Business Logo
AICPA SOC Compliance Logo
PCI DSS Compliant Logo
STAR Level One Logo
Grade A Security Scorecard
Shopping Basket

Which solution are you looking for?

Takeoff & Estimate
Calculate everything you need anytime, anywhere.
Build & Operate
Seamlessly link your data from the office to the field.

Need a more custom solution?  Talk to us

STACK Training Videos

Select which training library you would like to access: