Security at SortNex

We implement industry-leading security practices to protect your data and maintain your trust.

Multi-Tenant Architecture

Row-level security ensures complete data isolation between tenants. Your data is never visible to other customers.

Encryption

Data encrypted in transit (TLS 1.3) and at rest (AES-256). Industry-standard cryptographic protocols throughout.

Access Controls

Role-based access control (RBAC), JWT authentication, and granular permission systems.

Infrastructure Security

Hosted on secure cloud infrastructure with 24/7 monitoring, DDoS protection, and automated backups.

Security Practices

Regular Audits

  • Annual third-party security audits
  • Penetration testing every 6 months
  • Continuous vulnerability scanning

Compliance

  • GDPR compliant data handling
  • SOC 2 Type II certification (in progress)
  • ISO 27001 alignment

Data Protection

  • Automated daily backups with 30-day retention
  • Point-in-time recovery capabilities
  • Geographic redundancy across multiple regions

Incident Response

We maintain a 24/7 security operations center (SOC) with dedicated incident response procedures. In the event of a security incident:

  • Immediate containment and investigation
  • Notification to affected customers within 72 hours
  • Transparent post-incident reporting

Report a Security Issue

If you discover a security vulnerability, please report it responsibly:

Email: security@sortnex.com

We appreciate responsible disclosure and will acknowledge reports within 24 hours.