Sécurité et conformité
Flywire fait l'objet de vérifications annuelles de conformité aux normes SOC II et PCI DSS afin de garantir la gestion sécurisée des données client de Flywire et leur conformité avec les règlements et lois en vigueur, notamment RGPD, LPRDE, FERPA, GLBA et autres lois de protection de données, pour assurer la sécurité de vos transactions.
Flywire maintient également des programmes de conformité solides en matière de lutte contre la criminalité financière, comme l'exigent nos régulateurs mondiaux, afin de nous assurer que nos activités sont conformes aux réglementations en vigueur dans les pays où nous opérons.

Quelques-unes des mesures que nous prenons pour garantir votre protection constante
Flywire Named to PCI Security Standards Council 2025-2027 Board of Advisors
Flywire has been named to the PCI Security Standards Council 2025-2027 Board of Advisors. Flywire’s Chief Technology Officer David King, and Chief Information Officer / Chief Information Security Officer Barbara Cousins, will represent Flywire on the PCI SSC Board of Advisors and provide their expertise to help shape the future of payment security.
What is Flywire's PCI DSS compliance level?
Flywire maintains PCI Level 1 Certification with third-party attestations—the highest level. This certification is renewed annually.
Does Flywire undergo SOC 2 audits?
Yes. Flywire undergoes an annual SOC 2 Type II audit supporting information management processes. These reports are available upon request for authorized security reviewers and procurement teams.
Which data protection regulations does Flywire comply with?
Flywire is compliant with GDPR (EU), PIPEDA (Canada), FERPA (US education records), GLBA (US financial privacy), HITRUST, and other regional data-protection laws. Flywire also maintains robust anti-financial crimes compliance programs.
What security measures does Flywire implement?
Flywire implements multiple security layers: on-going vulnerability scanning, application firewall, input validation, annual penetration tests, annual SOC II security audits, and annual PCI DSS external reviews.



