Security

Infrastructure and security for regulated financial data​

Our customers trust us with their most sensitive data they hold as corporate group. We protect it with the highest industry-standard controls, independent audits and a transparent trust center.

Onefin security and infrastructure illustration
How we protect your data

Advanced technology ensures uncompromised data security

Security is engineered into the platform. From infrastructure and tenancy isolation to per-user access control and a complete audit trail.

Data protection

Security measures

Encrypted infrastructure, continuous rolling backups, and independent external audits keep your data protected around the clock.

Privacy-first approach

Multi-tenancy

Multiple groups and company portfolios stay safely separated into distinct silos, protecting every piece of sensitive data.

Secure infrastructure

Access control

Every client gets fully configurable access rights, controlling exactly which data each user can read or edit.

Fully auditable

Remain compliant

Every user action, data modification and access attempt is logged, ensuring full transparency and accountability.

Security FAQ

Where is my data hosted?

Onefin runs on AWS infrastructure within the EU. Data is encrypted in transit and at rest, with continuous rolling back-ups.

How do you monitor your security posture?

We use Vanta for continuous compliance monitoring across our controls. Our live posture is published in our Trust Center, and we undergo independent external audits.

Can different groups be kept fully separate?

Yes. Multi-tenancy lets you isolate each group or portfolio into its own silo, with fully configurable access control per user inside each client.

Is everything auditable?

Every user action, data modification and access attempt is logged, giving you a complete audit trail for compliance and accountability.

Want the full security details?