NoTraffic Security

The NoTraffic AI Mobility Platform is built with security at every layer-from the intersection to the cloud. Secure communications, isolated customer environments, and continuous monitoring help agencies deploy connected traffic infrastructure with confidence.

Security by Design

Controller to Cloud Isolation

Eliminating controller security threats with Nexus embedded Firewall ​

  • The nexus unit uses a patent HW firewall to help protect the traffic signal controller from unauthorized access and unwanted network connections
  • Nexus operates only within ITS-standard boundaries. Core safety parameters — minimum green, red clearance, preemption — stay read-only, protected by the cabinet’s MMU
  • Only phase calls and status are communicated between the compute module and interface board 

VPN Connectivity

Edge devices connect to the cloud exclusively via VPN, with internal network segmentation limiting cloud access to only the components that need it

  • Data in transit is protected with TLS 1.2
  • Data at rest uses 256-bit AES encryption, from edge device all the way to the cloud

Segregated Environments

Ensures continuous protection and quick resolution of any issues

  • Hosted on AWS in the US or canada, backed by 140+ AWS compliance certifications (FedRAMP, NIST, FIPS)
  • Server hardening is performed based on CIS standards
  • Isolated per-agency environments with constant CSPM monitoring
  • 24/7/365 monitoring NoTraffic Operations Center

PII-Free Data

  • Only aggregated traffic data, vehicle and pedestrian counts, metadata, is captured
  • Camera designed to meet functional needs, while not being sensitive enough for license plate or facial recognition

Compliance

SOC 2
Type II

SOC 2 Type II certification verifies that an organization’s controls for security, availability, processing integrity, confidentiality, and privacy are effectively designed and operating over time. It demonstrates our commitment to safeguarding customer data through rigorous, independently audited security practices.

ISO/IEC 27001

ISO/IEC 27001 is the internationally recognized standard for Information Security Management Systems (ISMS). This certification confirms that we have implemented a comprehensive framework to identify, manage, and reduce information security risks while continuously protecting sensitive customer and company data.

TX-RAMP

The Texas Risk and Authorization Management Program (TX-RAMP) is the security assessment and authorization framework for third-party cloud services used by Texas state agencies. TX-RAMP certification demonstrates that our platform meets the rigorous security and compliance standards required to support government organizations. *provisional

CSA Star Level 1

The Cloud Security Alliance’s Security, Trust, Assurance, and Risk (STAR) program provides a framework for documenting cloud security and privacy controls. NoTraffic has completed the CAIQ v4.0.3 self-assessment based on the Cloud Controls Matrix (CCM), demonstrating transparency and a commitment to recognized cloud security practices.