Enterprise-grade security

ERPKeeper Security

Details of the security measures we use to protect your data.

Multi-tenant isolation

Each organization's data is completely isolated at the schema level. There is no way for one organization to access another's data, even on the same server.

Data Encryption

All data is encrypted with AES-256 at rest and in transit via TLS 1.3. Encryption keys are managed through AWS KMS.

Role-based access (RBAC)

Our RBAC system allows you to set granular permissions for each user, from module level down to document level, with audit logging for every access.

Encrypted backups

Automatic daily backups encrypted with AES-256, stored in AWS S3 cross-region with point-in-time recovery up to 30 days.

Audit Logging

Every action in the system is logged in detail, including logins, data modifications, and report exports. Logs are retained for at least 1 year.