Infrastructure
Hosted in AWS Sydney (ap-southeast-2) on Amazon Linux 2023 with Alpine-based Docker containers. Weekly OS patching is applied to the underlying platform.
Security · Data Handling · Assurance
How the CERTE governance platform protects customer data: our security architecture, encryption and data-handling practices, compliance approach, and the controls behind the product. Prepared for procurement, risk, and audit teams.
CERTE is a governance, risk, and continuity platform hosted entirely within Australia. We hold platform data to a least-privilege, encrypted-by-default standard and actively track an independent remediation roadmap. Detailed assessment findings are available to verified stakeholders.
Security Architecture
CERTE applies layered controls across infrastructure, data, identity, and application. The description below reflects the platform as actually deployed.
Hosted in AWS Sydney (ap-southeast-2) on Amazon Linux 2023 with Alpine-based Docker containers. Weekly OS patching is applied to the underlying platform.
AES-256-GCM at rest via AWS KMS across database storage, backups, and S3 report files. TLS in transit with TLS 1.0/1.1 disabled at the load balancer.
Administrative and staff access uses IAM least-privilege with enforced MFA (passkey/TOTP/FIDO; SMS disabled). Database access is brokered through a bastion/proxy rather than exposed directly.
NestJS + Apollo GraphQL backend and a Next.js frontend. Passwords are hashed with bcrypt, ORM queries are parameterised, and dependencies are scanned with Snyk during development.
Activity is logged to AWS CloudWatch with sensitive fields redacted. Critical user actions are recorded against unique IDs to maintain an auditable timeline.
Encrypted daily database backups are retained in AWS. Generated report files (PDFs) are automatically purged after 7 days to limit data exposure.
Identity & Access
Certe authenticates against standards-based enterprise identity. Privileged access already enforces phishing-resistant MFA; end-user MFA and single sign-on are in active development and integrate with any SAML 2.0 / OIDC identity provider — so access stays governed by your own directory.
Revoke access in your directory and it ends in Certe immediately — closing the window where a departing employee could retain access to sensitive risk documents.
Every sign-in flows through your identity provider’s audit trail, giving your security team full visibility with no extra tooling.
Conditional access and threat detection from your identity provider automatically block compromised accounts and alert your team.
Standards-based by design: Certe integrates with any SAML 2.0 / OIDC identity provider, so identity, MFA policy, and access governance stay in your control. Planning an enterprise rollout? Talk to our team about SSO.
Data Handling & Residency
CERTE is a self-reporting governance and risk tool. We design to minimise the personal information held and to keep customer data within Australia.
Free-text fields may contain organisationally sensitive material; access is restricted to invited document owners, collaborators, and viewers.
Data resides in Australia — AWS SydneyCompliance & Assurance Approach
We are transparent about what is certified, what is aligned, and what is still under evaluation. CERTE does not currently hold formal ISO or SOC certification — items below reflect our genuine control posture and direction.
Data handling aligned to the 13 Australian Privacy Principles, including the Notifiable Data Breach scheme. The platform is designed to minimise personal information.
All platform data is hosted in the AWS Sydney region. Personal information is not transferred overseas without explicit consent.
An external review of the platform was completed in 2025. Findings are tracked on a remediation roadmap; the detailed register is available to verified stakeholders.
Application security controls are reviewed against the OWASP Application Security Verification Standard and Top 10 risk categories.
The ASD Essential Eight mitigation strategies are used as a hardening reference for patching, application control, and access management.
Controls are mapped against the NIST Cybersecurity Framework core functions to structure our security programme.
Not currently certified. We are assessing the path to an Information Security Management System certification as the product matures.
Not currently held. Trust Services Criteria readiness is being explored to support enterprise procurement.
Items flagged Procurement are commonly requested in enterprise procurement. CERTE does not currently hold ISO/IEC 27001 or SOC 2 certification; these are represented as under evaluation rather than achieved.
Independent & Internal Assessment
A transparent, evidence-based record of findings and remediation. The summary, roadmap, and lower-severity findings are published openly; high and critical findings are released to verified stakeholders under NDA.
Loading assessment…
Technical Documentation
Reference material for engineering, procurement, and risk teams. Items marked “on request” are shared with verified stakeholders under NDA where appropriate.