SECURITY ARCHITECTURE

Control the access.
Inspect the evidence.

Review the security controls against the systems, data and actions in your deployment. Infrastructure assurance and SupraOS product controls remain separately documented.

01

Managed-service boundary

European hosting, documented isolation, encryption in transit and at rest, scoped connector identities, backups and deployment-specific recovery commitments form the published managed-service boundary.

02

Certified infrastructure

SupraOS uses HYLMAN’s ISO/IEC 27001:2022-certified information-security infrastructure and management system for that managed-service boundary. This is not a separate certification of SupraOS.

03

Read-only first

Discovery can begin without write authority. Approved actions receive a defined scope, accountable authority and independent destination check.

04

Deployment review

Review the architecture, hosting, data flows, access, incident contacts and recovery commitments for the actual customer deployment.

Review the proposed boundary.

Contact the security team with your company, deployment and the materials you need.

security@supraos.co