Data is encrypted in flight and at rest up to global banking standards (TLS1.2, RSA, AES256). Public facing APIs are encrypted by default.
Permissions are secure and highly configurable. Roles are configured as collections of system interaction permissions at the Create, Read, Update, Delete level.
Role access logging is granular and conducted at the level of the actions undertaken by specific users. Access to PII can be strictly controlled and logged (to GDPR / DPA’18 standards).