All the big providers offer no-training/retention guarantees (either by default, or as a toggle, or upon request). For many high security environments though I'd expect everything to be hosted on-prem or at minimum on company-controlled instances, which does limit your model options somewhat.

My employer has such contracts for some use cases, but actually forbids use of code completion/generation due to IP concerns.