Security overview
At Ekai, we are committed to protecting customer data and maintaining a secure, reliable platform. Our security program is designed around industry best practices and continuously evolves to address emerging threats.
Infrastructure Security
- Hosted on secure cloud infrastructure (AWS)
- Virtual Private Cloud (VPC) for network isolation
- Firewalls and security groups restrict unauthorized access
- Continuous monitoring of infrastructure and network activity
Data Protection & Encryption
- All data encrypted in transit using TLS 1.2+
- Data encrypted at rest using AES-256
- Secure key management practices implemented
Access Control
- Role-Based Access Control (RBAC) enforced across systems
- Principle of least privilege applied to all access
- MFA required for privileged access
- Regular access reviews conducted
Application Security
- Secure Software Development Lifecycle (SDLC) practices
- Code reviews required for all production changes
- Automated testing and CI/CD pipelines
- Dependency and vulnerability scanning
Monitoring & Incident Response
- Centralized logging and monitoring
- Real-time alerting on suspicious activity
- Incident response plan with defined escalation procedures
- Post-incident reviews and root cause analysis
Data Privacy & Confidentiality
- Customer data is logically isolated
- Access to customer data is restricted and audited
- Employees and contractors sign confidentiality agreements
Business Continuity & Backups
- Regular automated backups
- Disaster recovery procedures in place
- High availability architecture for production systems
Vendor & Third-Party Management
- Use of trusted cloud and infrastructure providers
- Vendors evaluated for security and compliance
- Shared responsibility model clearly defined
Compliance & Assurance
- SOC 2 compliance program in progress
- Security policies reviewed and updated regularly
- Internal risk assessments conducted






