Safeguarding your client data with unmatched protection.

You hold passports, financial evidence and personal histories. Here is exactly how that data is encrypted, stored, logged and recovered, with no vague assurances.

Hosting
Microsoft Azure
Residency
Australia only
In transit
TLS
At rest
AES
Encryption

Data encryption standards

In transit

All communications between client devices and servers are encrypted using TLS (Transport Layer Security).

At rest

Core system data is secured using AES (Advanced Encryption Standard), ensuring sensitive records remain protected within the database and storage systems.

Data encryption standards
Data sovereignty

Cloud storage & data sovereignty

Microsoft Azure infrastructure

The platform is hosted on Microsoft Azure infrastructure, deployed across multiple regions to meet SLA and redundancy requirements.

Australia-based data centres

All primary storage and backup locations are within Australia-based data centres, supporting data sovereignty and compliance with Australian regulations.

Cloud storage & data sovereignty
Compliance

Compliance with Australian privacy laws

Privacy Act & MARA

The system aligns with the Australian Privacy Act 1988 (Cth) and MARA (Migration Agents Registration Authority) regulations.

Data minimisation enforced

Only information strictly required for system operations is collected and retained.

Compliance with Australian privacy laws
Audit and access

Audit logging & access controls

Comprehensive activity logging

All user operations and administrative actions are captured, and activity can be traced back to individual users for audit support.

Role-based access control

RBAC ensures users only have access to the data and modules necessary for their role, with custom security roles available.

Audit logging & access controls

Continuity, permissions and login security

Disaster recovery & backups

Disaster recovery & backups

  • Automated daily backups of databases and system data
  • Shorter schedules (e.g. hourly) available for high-frequency operations
  • Recovery supported by Azure high-availability and geo-redundancy
User permissions & security roles

User permissions & security roles

  • Granular role-based permissions across the platform
  • Data segregation between staff, managers and administrators
  • Custom security roles defined per organisation
Authentication & login security

Authentication & login security

  • 2FA via Microsoft or Google Authenticator apps
  • Organisations can enforce 2FA for all users
  • Session and domain controls per organisation