Security at SortNex
We implement industry-leading security practices to protect your data and maintain your trust.
Multi-Tenant Architecture
Row-level security ensures complete data isolation between tenants. Your data is never visible to other customers.
Encryption
Data encrypted in transit (TLS 1.3) and at rest (AES-256). Industry-standard cryptographic protocols throughout.
Access Controls
Role-based access control (RBAC), JWT authentication, and granular permission systems.
Infrastructure Security
Hosted on secure cloud infrastructure with 24/7 monitoring, DDoS protection, and automated backups.
Security Practices
Regular Audits
- Annual third-party security audits
- Penetration testing every 6 months
- Continuous vulnerability scanning
Compliance
- GDPR compliant data handling
- SOC 2 Type II certification (in progress)
- ISO 27001 alignment
Data Protection
- Automated daily backups with 30-day retention
- Point-in-time recovery capabilities
- Geographic redundancy across multiple regions
Incident Response
We maintain a 24/7 security operations center (SOC) with dedicated incident response procedures. In the event of a security incident:
- Immediate containment and investigation
- Notification to affected customers within 72 hours
- Transparent post-incident reporting
Report a Security Issue
If you discover a security vulnerability, please report it responsibly:
Email: security@sortnex.com
We appreciate responsible disclosure and will acknowledge reports within 24 hours.