Security and compliance

Itexus addresses vendor security review requirements around access, infrastructure, recovery, and continuity through documented and enforced controls.

Access and identity control

Role-based access, least-privilege permissions, multi-factor authentication, and strict separation of client environments and data

Encryption and data protection

AES-256 at rest, TLS 1.2+ / TLS 1.3 in transit, secure credential handling, protected storage, and controlled backups

Infrastructure security

Cloud security controls, network segmentation, firewalls, endpoint protection, and antivirus safeguards

Backup, recovery, and continuity

Documented backup policies, disaster recovery planning, rollback paths, and service continuity standards

Monitoring and incident response

Logging, alerting, 24/7 monitoring, defined escalation paths, and formal incident response procedures

Aligned with enterprise standards

Controls structured around SOC 2 and ISO/IEC 27001 expectations, with PCI DSS considerations where relevant