Compliance frameworks, security audits, and quality certifications this company maintains.
New Relic maintains SOC 2 Type II attestation for its all-in-one observability platform, providing enterprise customers verified assurance that New Relic's systems securely handle the sensitive application telemetry, logs, and infrastructure metrics ingested from customer environments.
New Relic holds ISO 27001 certification for its information security management system, demonstrating systematic controls protecting the petabytes of customer telemetry data processed daily across the New Relic observability platform.
Regulatory
FedRAMP Moderate
CertifiedNew Relic holds FedRAMP Moderate authorization, allowing U.S. federal civilian agencies to use New Relic's APM, infrastructure monitoring, and log management capabilities for applications handling controlled unclassified information.
New Relic's data processing practices comply with GDPR, offering EU data residency in Frankfurt, Standard Contractual Clauses, and a comprehensive Data Processing Agreement covering all telemetry data types ingested from European enterprise customers.
New Relic offers HIPAA-eligible configurations with Business Associate Agreements, enabling healthcare organizations to use New Relic observability for monitoring applications that process protected health information in clinical and administrative systems.
New Relic supports PCI DSS compliance for payment card industry customers by providing APM and log monitoring capabilities for cardholder data environments with appropriate data masking and audit-ready observability controls.
New Relic complies with the California Consumer Privacy Act, providing enterprise customers with data subject request capabilities and privacy controls for telemetry data that may contain personal information about California-based users.
New Relic has achieved CSA STAR Level 2 certification for its cloud-based observability platform, providing enterprise customers third-party validated assurance of cloud security controls across the New Relic data ingestion and storage infrastructure.
New Relic is certified to ISO 27018, ensuring that observability telemetry data — including logs, traces, and metrics from customer applications — is handled according to internationally recognized cloud privacy standards.
New Relic's observability platform and dashboards conform to WCAG 2.1 AA accessibility guidelines, ensuring that engineering and operations teams of all abilities can monitor system performance, investigate incidents, and manage alerts without barriers.