Security
How we protect your data
Operational resilience data is some of the most sensitive material a firm holds — it maps exactly where you are weakest. We describe only what the platform does today.
Where your data sits
- Data residency
- Configurable to your firm's requirement. We set the region your data is stored and processed in to match your policy rather than asking you to accept ours — tell us the constraint you are working to and we will confirm what we can meet before you commit to anything.
- Deployment model
- Cloud, or on-premises inside your own environment, available on request. The difference is who holds the infrastructure and who carries the operational burden of running it.
- Tenant isolation
- Each firm's data lives in its own tenant-scoped workspace, separated from every other tenant. The database rejects direct API access outright, and every query the application makes is scoped to a single tenant.
- Encryption
- Encrypted in transit and at rest, including the source documents you upload as evidence.
Who can get to it
- Single sign-on
- SSO against your identity provider, so joiners and leavers are handled by the process your firm already runs rather than by a separate list somebody has to remember to update.
- Multi-factor authentication
- Time-based one-time codes with recovery codes, enrolled and managed from the user's own security settings.
- Role-based access
- Permissions are scoped to each person's role, so people see and change only what they should.
- Approval workflows
- Sign-off gates for impact tolerances, vulnerability closure and report publication keep ownership explicit and prevent unilateral changes to approved artefacts.
How it stays defensible
- Audit trail
- Every approved artefact is versioned and audit-logged — who changed what, and when. Approving version 3 does not delete versions 1 and 2, and the entries between them remain inspectable.
- Evidence traceability
- Decisions link back to the source document behind them, so the reasoning survives the person who made it.
- Where the AI stops
- AI drafts from the documents you provide and nothing else. No public web research, no inferred facts about your firm, and no suggestion becomes workspace data until a named person accepts it — an acceptance that is itself audit-logged.
Running a vendor security review? Ask at the demo and we’ll send the architecture overview, the subprocessor list and the data flows, and complete your questionnaire in whatever format your firm uses.