Trust Center
How we protect client data, source code and production systems, and how to reach us about security.
Data Protection
Encryption in transit and at rest, environment separation, and client data never used outside the engagement it belongs to.
Access Control
Role-based access on a least-privilege basis, MFA on all internal systems, and access reviews when teams change.
Secure Development
Code review on every change, dependency and secret scanning in CI/CD, and security testing before release.
Incident Response
A documented incident process with 24-hour acknowledgement, client notification without undue delay, and post-incident reviews.
Monitoring & Logging
Centralized logging, alerting on anomalous access, and audit trails retained for production systems we operate.
Business Continuity
Tested backups, documented recovery procedures, and redundancy for the delivery infrastructure clients depend on.
Compliance
- GDPR-aligned data handling for EU client engagements
- Vietnam Personal Data Protection Decree (PDPD) compliance
- Security practices modeled on ISO 27001 controls
- NDAs and data processing agreements on every engagement
Report a security concern
We acknowledge reports within 24 hours. security@meerietechnology.com
