セキュリティとコンプライアンス
フライワイヤーは、毎年SOC IIおよびPCI DSSのレビューを受けています。これは当社がお客様のデータを安全に取り扱い、GDPR、PIPEDA、FERPA、GLBA、その他のデータ保護法を含むがこれらに限定されないすべての適用法を遵守して、取引のセキュリティを信頼してご利用いただくためのものです。
また、フライワイヤーでは、当社が事業を展開する地域の規制を確実に遵守するため、世界各国の規制当局の要求に従い、強力な金融犯罪防止コンプライアンスプログラムを整備しています。

揺るぎない保護をお届けするために当社が実装している手段
Flywire Named to PCI Security Standards Council 2025-2027 Board of Advisors
Flywire has been named to the PCI Security Standards Council 2025-2027 Board of Advisors. Flywire’s Chief Technology Officer David King, and Chief Information Officer / Chief Information Security Officer Barbara Cousins, will represent Flywire on the PCI SSC Board of Advisors and provide their expertise to help shape the future of payment security.
What is Flywire's PCI DSS compliance level?
Flywire maintains PCI Level 1 Certification with third-party attestations—the highest level. This certification is renewed annually.
Does Flywire undergo SOC 2 audits?
Yes. Flywire undergoes an annual SOC 2 Type II audit supporting information management processes. These reports are available upon request for authorized security reviewers and procurement teams.
Which data protection regulations does Flywire comply with?
Flywire is compliant with GDPR (EU), PIPEDA (Canada), FERPA (US education records), GLBA (US financial privacy), HITRUST, and other regional data-protection laws. Flywire also maintains robust anti-financial crimes compliance programs.
What security measures does Flywire implement?
Flywire implements multiple security layers: on-going vulnerability scanning, application firewall, input validation, annual penetration tests, annual SOC II security audits, and annual PCI DSS external reviews.



