Security
HCL MyXalytics applies built-in security controls to protect analytics data and user access.
- Data encryption: Data is protected through a secure-by-design architecture, using AES-GCM 256-bit encryption for data at rest and TLS 1.2/1.3 for secure transmission of summarized data to users.
- Data protection: Access controls and secure handling of summarized data protect customer information across the platform.
- Identity & access management: Role-based access controls and audit logs enforce authorized access and ensure traceability of user and system activity.
- Secure development & testing: Security is embedded across the SDLC through threat modeling, secure design reviews, vulnerability checks, and internal and external penetration testing.
- Incident response: Reported security vulnerabilities are handled through our PSIRT process and published in security advisories.