Security & Governance

Governed by design.

Assurance is only as good as its controls. AfP360° enforces separation of duties, records every change, and lets no figure onto a certificate without a signature behind it.

Maker-checker approvals

Every create, update and delete is proposed by a maker and released by a checker. Nothing changes the record on a single pair of hands.

Role-based access control

Access is governed by NEC role. Modules, actions and even individual fields are gated by fine-grained, admin-configurable grants.

Immutable audit trail

Who changed what, when and why — captured on an append-only activity log that stands up to scrutiny long after the period closes.

Digital signatory chains

Configurable signatory hierarchies seed each revision and certificate, so the right people sign in the right order, every time.

Hardened authentication

Constant-time credential checks and no account enumeration — the sign-in path costs the same whether an account exists or not.

Full traceability

Forward-only period state and source-linked figures mean any number on a certificate can be traced back to the cost that produced it.

Controls you can evidence to any auditor.