Security & Trust

Security engineered into every layer.

HR data is the most sensitive data your company holds. HRMione is built by a team with a security-first mindset and audited by external experts, so you can share it with your CISO in one meeting.

SOC 2 Type II ISO 27001 GDPR ready DPDP Act aligned

Security pillars

Defence in depth, by design

Encryption everywhere

TLS 1.3 in transit and AES-256 at rest. Keys rotated regularly and stored in a managed KMS.

SSO and MFA

Google, Microsoft, Okta and SAML 2.0 SSO with enforced MFA for admins.

Role-based access

Field-level permissions, granular scopes and just-in-time elevation for sensitive actions.

Immutable audit logs

Every action captured with actor, timestamp and diff. Exportable to your SIEM.

Data residency

Choose India, EU or US hosting. Nightly encrypted backups with point-in-time recovery.

99.98% uptime

Multi-AZ deployment, active health checks and transparent status page.

Operational commitments

What we sign up to, in writing

Legal, security and operational commitments that go into every enterprise agreement.

  • Signed DPA with every enterprise customer
  • Sub-processor list published and updated
  • Penetration tests by external CERT-In empanelled labs
  • 24×7 security monitoring and incident response
  • Employee background verification and secure workstations
  • Vulnerability disclosure programme with responsible disclosure rewards

Report a vulnerability

Found a security issue? Please email us at security@interestbudsolutions.com with reproduction steps. We acknowledge every report within 24 hours.

Need our security pack?

DPA, sub-processor list, SOC 2 report and pen-test summary, on request for evaluating teams.

Request the pack