Trust by design
Security at Infinitius.
Our approach to protecting website interactions, business information and project communications.
1. Our security approach
Security measures are selected according to the nature of information, operational risk and the services in use. We periodically review controls and adjust them as systems, threats and business requirements evolve.
2. Core safeguards
- Access is limited according to role and business need.
- Administrative accounts and devices use appropriate authentication controls.
- Website transport is expected to use encrypted HTTPS when deployed.
- Software, hosting and dependencies are maintained and reviewed.
- Important information is backed up or retained according to operational need.
- Personnel and authorized partners are expected to handle information confidentially.
3. Service providers
We may use reputable hosting, communication, analytics, CRM and collaboration providers. Selection considers capability and security posture, while access is limited to the intended service purpose.
4. Incident response
Suspected security events are assessed, contained and investigated according to severity. Where legally required, affected parties or authorities will be notified within applicable timelines.
5. Shared responsibility
Users should avoid sending passwords, payment credentials or highly sensitive information through general enquiry forms. Verify unexpected requests, use secure devices and contact us through known channels if a communication appears suspicious.
6. Responsible reporting
If you believe you have found a vulnerability or security issue affecting this website, please use the contact page and clearly mark the message “Security”. Include enough detail to reproduce the issue, avoid accessing data that is not yours, and allow reasonable time for investigation before public disclosure.
