Security & assurance

Built for trust.Designed for assurance.

Security and trust are designed into Keston Pulse from the outset. Our controls and operating practices are mapped against recognised frameworks including ISO/IEC 27001, SOC 2 and OWASP guidance, with independent security testing forming part of our assurance programme.

Secure by design

Identity, role-based access, tenant isolation and controlled administrative access are built into the platform architecture.

Evidence & accountability

Provenance, confidence, freshness, audit events and human approval provide a visible trail from evidence to decision.

Continuous assurance

Security testing, vulnerability management, dependency review, backup and recovery form part of the platform’s ongoing security programme.

Independent assurance

Independent security assessment and penetration testing form part of our assurance roadmap as the platform progresses through commercial deployment.

  • ISO/IEC 27001
  • SOC 2
  • OWASP
  • UK GDPR
  • Cyber Essentials

Frameworks shown represent alignment and assurance objectives. They do not imply certification unless explicitly stated.

Current assurance status

Security controls
Implemented and continuously reviewed
Tenant isolation
Implemented
Secure authentication
Implemented
Security framework mapping
In place
Independent penetration testing
Assurance roadmap
Formal certification
Not currently claimed