Security
- Data Encryption: Data is consistently protected in transit using secure protocols (such as TLS) and encrypted at rest using strong, industry-standard or cloud-native mechanisms.
- Identity & Access Management (IAM): Secure access is enforced across the portfolio through Role-Based Access Controls (RBAC), least-privilege policies, and integration with enterprise Single Sign-On (SSO) or federated identity providers.
- Secure Development Lifecycle (SDLC): Security is deeply embedded throughout the product lifecycle, incorporating practices like threat modeling, automated security testing, and secure design reviews.
- Incident Response: Vulnerabilities and security events across all products are centrally managed through the HCLSoftware Product Security Incident Response Team (PSIRT) for coordinated tracking and remediation