Security

Security you can trust

CoreCyber protects your data with the controls modern enterprises expect — passwordless sign-in, encryption, and strict data isolation — so you can adopt us with confidence.

What you can count on

The essentials your team and security reviewers need to move forward with confidence.

Your data is encrypted

Encrypted in transit and at rest.

Your data is isolated

Every customer's data is logically separated — your information is only ever visible to your team.

Passwordless by design

Sign in with a one-time code (OTP); add an authenticator-app second factor (TOTP) for extra protection.

Audit-ready operations

Administrative oversight and activity tracking support governance and compliance reviews.

How we protect you

Protecting your data
  • Encrypted in transit and at rest
  • Strict tenant isolation so customers never see each other's data
  • Least-privilege access and data minimization by design
Protecting your account
  • Passwordless sign-in — no passwords to steal, reuse, or phish
  • One-time passcode (OTP) verification to sign in
  • Optional authenticator-app two-factor authentication (TOTP)
Running the platform responsibly
  • Audit-style activity tracking for key workflows
  • Controlled, permissioned third-party integrations
  • Clear privacy policies and a process for data-rights requests

Frequently asked questions

Quick answers to the questions we hear most during security and procurement reviews.

Need to complete your due diligence?

Send us your security questionnaire or compliance requirements and our team will help you get the answers your organization needs.

This page describes our security approach for informational purposes and is not a certification claim.