A summary of the controls and practices that underpin EnginePro.
Granular roles ensure each person can access only the data and actions appropriate to their role.
Authentication and session management designed to keep accounts protected.
Credentials are handled using accepted protection practices.
The platform is built to support multi-factor authentication and single sign-on where configured.
Data is encrypted in transit using HTTPS/TLS between your devices and EnginePro.
Hosted on reputable, scalable cloud infrastructure with security controls.
Key actions are logged to support accountability and investigations.
Administrators manage access centrally with least-privilege defaults.
Powerful admin settings keep policy consistent as organisations grow.
Backup and recovery processes help protect against data loss.
Systems are monitored and logged to detect and respond to issues.
Sensitive employee data is handled with additional care and access restrictions.
Uploaded files and documents are handled with access restrictions, and we apply least-privilege principles so users and systems have only the access they need.
We welcome responsible disclosure. If you believe you’ve found a security issue, please contact our security team at security@enginepro.io with details so we can investigate.
Enterprise buyer or app reviewer? We’re glad to walk through our practices.