NoTraffic Security
The NoTraffic AI Mobility Platform is built with security at every layer-from the intersection to the cloud. Secure communications, isolated customer environments, and continuous monitoring help agencies deploy connected traffic infrastructure with confidence.


Security by Design
Controller to Cloud Isolation
Eliminating controller security threats with Nexus embedded Firewall
- The nexus unit uses a patent HW firewall to help protect the traffic signal controller from unauthorized access and unwanted network connections
- Nexus operates only within ITS-standard boundaries. Core safety parameters — minimum green, red clearance, preemption — stay read-only, protected by the cabinet’s MMU
- Only phase calls and status are communicated between the compute module and interface board
VPN Connectivity
Edge devices connect to the cloud exclusively via VPN, with internal network segmentation limiting cloud access to only the components that need it
- Data in transit is protected with TLS 1.2
- Data at rest uses 256-bit AES encryption, from edge device all the way to the cloud
Segregated Environments
Ensures continuous protection and quick resolution of any issues
- Hosted on AWS in the US or canada, backed by 140+ AWS compliance certifications (FedRAMP, NIST, FIPS)
- Server hardening is performed based on CIS standards
- Isolated per-agency environments with constant CSPM monitoring
- 24/7/365 monitoring NoTraffic Operations Center
PII-Free Data
- Only aggregated traffic data, vehicle and pedestrian counts, metadata, is captured
- Camera designed to meet functional needs, while not being sensitive enough for license plate or facial recognition
Compliance

SOC 2
Type II
SOC 2 Type II certification verifies that an organization’s controls for security, availability, processing integrity, confidentiality, and privacy are effectively designed and operating over time. It demonstrates our commitment to safeguarding customer data through rigorous, independently audited security practices.

ISO/IEC 27001
ISO/IEC 27001 is the internationally recognized standard for Information Security Management Systems (ISMS). This certification confirms that we have implemented a comprehensive framework to identify, manage, and reduce information security risks while continuously protecting sensitive customer and company data.

TX-RAMP
The Texas Risk and Authorization Management Program (TX-RAMP) is the security assessment and authorization framework for third-party cloud services used by Texas state agencies. TX-RAMP certification demonstrates that our platform meets the rigorous security and compliance standards required to support government organizations. *provisional

CSA Star Level 1
The Cloud Security Alliance’s Security, Trust, Assurance, and Risk (STAR) program provides a framework for documenting cloud security and privacy controls. NoTraffic has completed the CAIQ v4.0.3 self-assessment based on the Cloud Controls Matrix (CCM), demonstrating transparency and a commitment to recognized cloud security practices.