ProductPricingFree toolsRoadmapResourcesCompanyLog InBook a Demo

Security

Last updated: July 2026
This page describes our security approach at a high level for the marketing site. It is not a contractual commitment — specific controls, certifications, and SLAs are confirmed with our team during procurement.

Agencies trust NexusWorkforce with sensitive data: guard records, credentials, payroll, and client billing. We treat that responsibility seriously and design our systems around protecting it.

Data protection

  • Data encrypted in transit (TLS) and at rest.
  • Offline records on guard devices are stored locally and synced securely when back online.
  • Secrets and credentials are stored using industry-standard hashing and secure secret management.

Access control

  • Role-based access — guards, supervisors, admins, and owners see only what they should.
  • Least-privilege access to production systems, granted on a need-to-know basis.
  • Administrative access protected by strong authentication.

Infrastructure and availability

We host on reputable cloud infrastructure with managed network security and regular backups. The offline-first design means clock-in and DTR capture keep working at the post even when connectivity doesn't, and records reconcile automatically once a connection returns.

Audit and integrity

Attendance and payroll changes are logged with a tamper-evident audit trail, so every edit is attributable. This supports both internal control and compliance reporting.

Vendor management

We use a limited set of sub-processors to operate the service and hold them to confidentiality and data-protection obligations consistent with our own.

Incident response

We maintain processes to detect, investigate, and respond to security incidents. In the event of a personal data breach that poses a real risk of serious harm, we will notify the National Privacy Commission and affected data subjects consistent with the Data Privacy Act (RA 10173) and NPC rules.

Privacy

We handle personal data in line with the Philippine Data Privacy Act (RA 10173). See our Privacy Policy for detail.

Reporting a vulnerability

Found a potential vulnerability? Please email security@nexus7systems.com with details so we can investigate promptly. We support responsible disclosure and ask that you give us a reasonable opportunity to address an issue before disclosing it publicly.

Create a Free-Trial Account