Enterprise requirements, without enterprise theater

SSO, audit logs, GDPR processes, a negotiable MSA — and direct answers to the questions your security and procurement teams will actually ask. No discovery-call gauntlet required to learn what we do.

What enterprise teams get

Identity your IT team controls

SSO via SAML 2.0 on the Enterprise plan — your identity provider, your access policies, your offboarding process.

Accountability built in

User-action audit logs track who did what, when — surveys created, edited, exported, permissions changed.

Paper your procurement can sign

Custom MSA with negotiable terms, a DPA for GDPR processing, and security questionnaires answered directly — with specifics, not boilerplate.

Honest compliance posture

GDPR data-subject processes in place today; SOC 2 and ISO 27001 on our roadmap — and we'll tell you exactly where we are rather than imply a certificate we don't hold. Full detail at /trust

Built for enterprise requirements
SSO (SAML 2.0)
User-action audit logs
Custom MSA / negotiated terms
Data Processing Agreement (DPA)
GDPR data-subject request handling
Data export (CSV/Excel)
Unlimited responses & workspaces
Multi-factor authentication
Staff and client seat roles
SCIM provisioningRoadmap
SOC 2 Type IIRoadmap
ISO 27001Roadmap
Audit log export to SIEMRoadmap
The questions procurement asks
Are you SOC 2 certified?

Not yet — it's on our roadmap, and we won't imply otherwise. In the meantime we complete security questionnaires directly and walk your security team through our controls. Read the trust page →

Can our agents and internal tools use SurveyRock programmatically?

There's a REST API today covering survey and response management. A broader agent-oriented API program — agent-grade authentication, event subscriptions, wider endpoint coverage — is on our roadmap, not yet built. If programmatic access is central to your evaluation, talk to us about timing.

Where is our data stored?

Currently on AWS. A dedicated EU-region environment is built and planned but not yet live — talk to us for the current status and timeline relative to your evaluation.

Do AI features put our data at risk?

AI features run only when invoked, are never trained on your response data, and never gate your data — collection and exports work even if AI providers are down. Full AI governance →

What does Enterprise cost?

Enterprise pricing is custom and sales-led, scoped to your response volume, seats, and specific requirements. Talk to us and we'll quote based on what you actually need.

Bring us your security questionnaire

We answer enterprise evaluations with specifics. Send the requirements; we'll tell you plainly what we meet today and what's on the roadmap.

Talk to us