Security

How we protect your data

Operational resilience data is some of the most sensitive material a firm holds — it maps exactly where you are weakest. We describe only what the platform does today.

  • Information security managementISO27001Certified
  • General Data Protection RegulationGDPRCompliant

Where your data sits

Data residency
Configurable to your firm's requirement. We set the region your data is stored and processed in to match your policy rather than asking you to accept ours — tell us the constraint you are working to and we will confirm what we can meet before you commit to anything.
Deployment model
Cloud, or on-premises inside your own environment, available on request. The difference is who holds the infrastructure and who carries the operational burden of running it.
Tenant isolation
Each firm's data lives in its own tenant-scoped workspace, separated from every other tenant. The database rejects direct API access outright, and every query the application makes is scoped to a single tenant.
Encryption
Encrypted in transit and at rest, including the source documents you upload as evidence.

Who can get to it

Single sign-on
SSO against your identity provider, so joiners and leavers are handled by the process your firm already runs rather than by a separate list somebody has to remember to update.
Multi-factor authentication
Time-based one-time codes with recovery codes, enrolled and managed from the user's own security settings.
Role-based access
Permissions are scoped to each person's role, so people see and change only what they should.
Approval workflows
Sign-off gates for impact tolerances, vulnerability closure and report publication keep ownership explicit and prevent unilateral changes to approved artefacts.

How it stays defensible

Audit trail
Every approved artefact is versioned and audit-logged — who changed what, and when. Approving version 3 does not delete versions 1 and 2, and the entries between them remain inspectable.
Evidence traceability
Decisions link back to the source document behind them, so the reasoning survives the person who made it.
Where the AI stops
AI drafts from the documents you provide and nothing else. No public web research, no inferred facts about your firm, and no suggestion becomes workspace data until a named person accepts it — an acceptance that is itself audit-logged.

Running a vendor security review? Ask at the demo and we’ll send the architecture overview, the subprocessor list and the data flows, and complete your questionnaire in whatever format your firm uses.