1. Our approach to security
Security is built into how we design, operate, and support DIVE. Because DIVE runs alongside your existing IBM Sterling B2BI and SFG environment, we design for least-privilege access, defense in depth, and operational visibility.
2. Data protection
- Encryption of data in transit (TLS).
- Role-based access controls and the principle of least privilege.
- Audit logging and monitoring of administrative activity.
How we handle personal data is described in our Privacy Policy.
3. Data residency
We support customers across the United States, the European Union, and the Middle East.
4. Compliance
To request our current security documentation, contact security@cognitrixsystems.com.
5. Sub-processors
We use a limited set of vetted sub-processors to host and operate our services. A current list, including their function and location, is available on request via security@cognitrixsystems.com.
6. Report a vulnerability
If you believe you’ve found a security issue, please email security@cognitrixsystems.com with details and steps to reproduce. We investigate all good-faith reports and ask that you avoid accessing or modifying others’ data while testing.
7. Contact
Security team: security@cognitrixsystems.com
Privacy team: privacy@cognitrixsystems.com