What each vendor actually publishes (and the marketing copy you should ignore)
**OpenAI Enterprise** publishes its full compliance program on the OpenAI trust portal at https://trust.openai.com/. The site lists current SOC 2 Type II (covering ChatGPT Enterprise, ChatGPT Team, and the API platform), ISO 27001, ISO 27017, ISO 27018, ISO 27701, and CSA STAR Level 2 attestations. HIPAA BAAs are available for ChatGPT Enterprise and API customers on request per https://openai.com/business-associate-agreement/. FedRAMP Moderate is listed as in-progress; OpenAI for Government runs on Azure Government infrastructure inheriting Azure's FedRAMP High posture. The marketing copy to ignore: 'enterprise-grade security' — that is a category, not a certification. Ask for the report.
**Anthropic Enterprise** (the Claude for Business tier) publishes at https://trust.anthropic.com/. As of mid-2025 Anthropic became one of the first frontier-model vendors to achieve ISO 42001 — the new ISO standard for AI management systems — alongside SOC 2 Type II and ISO 27001. ISO 27017, 27018, and 27701 are listed as in-progress on the trust portal. HIPAA BAAs are available on the Enterprise tier. The default API and Claude for Business posture is no training on customer data — Anthropic has held this line longer and more publicly than any other frontier-model vendor, which matters in regulated procurement.
**AWS Bedrock** inherits the full AWS compliance umbrella at https://aws.amazon.com/compliance/. That covers SOC 1/2/3, ISO 27001/17/18/9001/42001, PCI DSS Level 1, HIPAA, FedRAMP High in GovCloud, DoD IL4/IL5, IRAP PROTECTED in AU regions, and BSI C5 in EU regions. Bedrock-specific data handling is documented at https://docs.aws.amazon.com/bedrock/latest/userguide/data-protection.html — model providers (Anthropic, Meta, Cohere, Mistral, AI21, Stability) do not see your prompts or outputs, and AWS does not use your data to train Bedrock-hosted models. The trade-off: each Bedrock-hosted model still inherits the underlying model provider's GPAI obligations under the EU AI Act.
**Azure OpenAI** runs at the intersection of Microsoft's compliance posture and OpenAI's model stack. The Service Trust Portal at https://servicetrust.microsoft.com/ lists FedRAMP High, DoD IL4/IL5/IL6 (Azure Government), ISO 27001/17/18/701/42001, HIPAA, BSI C5, and the EU Data Boundary commitment for European customers. Azure OpenAI's data, privacy, and security documentation at https://learn.microsoft.com/azure/ai-services/openai/how-to/data-privacy explicitly states that customer prompts and completions are not used to improve OpenAI or Microsoft models. Microsoft's abuse-monitoring feature stores prompts for up to 30 days; customers can apply to opt out via the abuse monitoring opt-out form.
**Google Vertex AI** publishes its certifications through the Google Cloud Compliance Reports Manager at https://cloud.google.com/security/compliance/compliance-reports-manager. Vertex AI is covered under SOC 1/2/3, ISO 27001/17/18/701/42001, HIPAA, PCI DSS, FedRAMP High via Assured Workloads, IRAP PROTECTED in AU, and BSI C5 in EU. Vertex's data governance posture at https://cloud.google.com/vertex-ai/generative-ai/docs/data-governance commits that customer data is not used to train Google's foundation models. Google was the first hyperscaler to publish an ISO 42001 attestation specific to its generative-AI services.
**Cohere Enterprise** publishes its compliance program at https://cohere.com/security. SOC 2 Type II is current; ISO 27001 is current per their security page with 27017/18/701 in progress. HIPAA BAAs are available on the Enterprise tier by contract. Cohere's compliance posture is competitive with the hyperscaler-native LLM offerings for mid-market RAG workloads but trails on FedRAMP, IRAP, and C5 — if those certifications are required, Cohere is best deployed through AWS Bedrock or Azure to inherit the host certifications. **Mistral** at https://mistral.ai/security publishes SOC 2 Type II and positions itself explicitly as the EU-sovereign option, with French and EU data residency by default. **Databricks AI** (including MosaicML) at https://www.databricks.com/trust covers SOC 2 Type II, ISO 27001/17/18, HIPAA, PCI DSS, FedRAMP Moderate, and IRAP — strong for enterprise data-platform workloads where the LLM lives next to the data.