Is Speech to Text Software More Secure Than Human Transcription Services?

Take Note
Published in
6 min readApr 9, 2019

You want a secure transcription service. The thought of handing over your sensitive material to a stranger causes understandable consternation in many. An obvious conclusion is to cut the human out of the loop and use a machine instead.

No human, no risk — right?

The broad answer is wrong!

Although using ASR (automatic speech recognition) software services can alleviate some security concerns, it is far from a guaranteed secure transcription service. Almost every security-based concern and question you should have about using human-based transcription services apply to speech-to-text software solutions as well.

The big driving decision between your choice of human-based and software-led transcription services revolves around outcome and cost.

Leaving these points aside, however, here we will discuss the security problems and security solutions for both kinds of transcription services. This is your guide to getting a transcription service that meets your security requirements — allowing you to rest easy when it comes to your data security.

Why Would A Human Be Involved In An Automated Speech-To-Text Service?

Although you might think that automated transcription services would be, well, automated, that isn’t necessarily the case. In principle, automated transcription services can keep humans entirely out of the loop, but in practice, that isn’t always what occurs.

In general, the main reason for this is Product Development. The companies that develop speech-to-text software need to test how it is performing under a wide range of circumstances. Rather than conducting their own in-house tests, they sometimes just borrow the recordings of their customers.

Employees of vendors, therefore, may have access to your recordings for legitimate product development purposes and end up listening to them in order to improve their algorithms and create a better product. Sometimes these services even outsource this task to other human-transcription companies to get a human-generated transcript in order to compare it to their ASR output.

If you are worried about the security of your data, you need to look for guarantees regarding how your data will be treated after it is transcribed. Look for guarantees that your data will not be shared, that no human will look at your data or confidentiality guarantees if they do — more on that later.

How Can I Ensure I Use A Transcription Service That Will Protect My Data?

Regardless of whether or not you choose to use a human transcription service or a software-led solution, there are some basics that you should look out for that indicate a secure service that will take protecting your data seriously.

In summary, check that the vendor has the following: ISO accreditations, data encryption systems, NDAs enforcement policies and that they follow GDPR.

This last point is most important if you, yourself, are subject to GDPR compliance. But, even if you are not, it delivers assurances of global best practices when it comes to data protection that are only a bonus to your security.

  • ISO Accreditations: ISO accreditations are a set of international standardised accreditation for businesses across a range of industries. Check that the vendor you plan to use has both ISO 27001 and ISO 9001 certification. ISO 27001 accreditation demonstrates that they have shown proficiency in managing information security and ISO 9001 that they have good management system standards in general. ISO accreditation means that a company has attained a benchmark standard for professionalism and is likely to follow data security procedures diligently.
  • Data Encryption: Companies that have attained ISO 27001 are likely to use encrypted data transfer and storage for all your recordings. But, this is a critical technical component to a secure environment that you should investigate separately. On the most basic level, your transcription service provider should have an HTTPS URL, not an older HTTP one. You should also look for the use of TLS or SSL encrypted login portals and storage policies.
  • NDAs: An NDA, or nondisclosure agreement, is a legal document which prevents companies from discussing the contents of your recordings with any third party. You want a transcription service provider that will sign an NDA with you, and who advertises their internal confidentiality policies.
  • GDPR: GDPR is a set of rules that all companies in Europe must follow by law. GDPR relates to the use of personal information, including your recording data. Trustworthy companies will report how they comply with GDPR to protect any information you send them on their websites.

Always Research Your Transcription Service Of Choice

Although many companies have systems in place to protect customer data, no system is 100% safe. But, nothing is 100% safe. All you can do is take precautions, such as making sure that the transcription service has the required accreditation, that they use data encryption and that they are willing to sign an NDA. But your job shouldn’t end there. If you are really concerned about the safety of your data, do the following:

Avoid Offshore Transcriptionists

This is mostly applicable to human transcription service. But, it is worth thinking about who is transcribing your data. Some transcription services engage with freelance and offshore transcriptionists. This allows these companies to charge less, but diminishes their control over how your data is accessed and used.

The use of an offshore workforce also makes it harder for you to pursue NDA violations by pulling in multiple legal jurisdictions. Internationally transmitting information to overseas workers increases the risk of interception by malicious actors. Fundamentally, for your most secure data, look to engage with companies based in countries with a robust judicial system that keep their transcriptionists in-house and local. What’s more, UK-based transcriptionists, like all companies in the UK, must obey GDPR rules on customer privacy and data security.

Ask About Their Practices For Keeping Your Data Safe

The other thing that you can do is ask the transcription service how they keep your data safe while transcribing. All transcriptionist services, whether software- or human-based, should have a policy that they can point to which sets out exactly how they maintain data security. This will likely cover all of the things that have been addressed in this article. But, if they cannot show you how they will protect your data, they aren’t taking your data or your relationship as a customer that seriously.

What is the Real Difference Between ASR and Human Transcription Service?

If software-led services aren’t any more secure, why do people use them? The answer to that is simple: they are far cheaper than human-based transcription services. Some ASR services are free, and those that take security seriously rarely rise above £0.10 per minute of audio. Human transcription services, on the other hand, start around £1 per minute, and often cost in excess of £2.

What people don’t often realise, however, is that what these two services deliver is quite different. To find out which one will actually deliver the kind of outcome that you need, check out our guide to human transcription services vs. automatic speech recognition (ASR).

Originally published at



Take Note
Editor for

Notetaking & transcription company offering efficient remote & on-site notetakers to turn your conversations into type.