Security & Compliance

Enterprise-Grade Security for Modern Advice Firms

ISO 27001 certified, Cyber Essentials Plus accredited, and built with security at our core. We're not just another tech startup – we're a well-run, security-focused business that financial institutions can trust with their most sensitive data.

Certified & Accredited

Third-party validated security standards you can trust

ISO 27001 Certified

ISO 27001 Certified

International standard for information security management systems

Cyber Essentials Plus

Cyber Essentials Plus

Government-backed certification for cyber security

Evalian DPO Services

Evalian DPO Services

External Data Protection Officer ensuring GDPR compliance

Punching Above Our Weight

As a VC-backed technology company, we've invested heavily in security and compliance from day one. While other startups cut corners, we've built enterprise-grade infrastructure that rivals established financial institutions.

Our recent ISO 27001 certification – achieved without any remediation required – demonstrates our commitment to operational excellence. We're not just meeting standards; we're exceeding them.

  • £2m+ in funding from strategic investors including Haatch Ventures
  • Revenue generating since inception – rare for VC-backed companies
  • Multiple contingencies including code escrow for business continuity
  • Layered expertise reducing reliance on any single team member
Emma - Team Ningi working
Alex - Team Ningi working
Ningi - Team Ningi working
Whiteboard - Team Ningi working

Security by the Numbers

99.9%
Uptime SLA
Guaranteed availability
< 1hr
Recovery Time
Data restoration capability
256-bit
AES Encryption
Military-grade security
24/7
Monitoring
Continuous security oversight

Comprehensive Compliance Framework

Built to exceed regulatory requirements and protect your business

Data Protection

UK GDPR compliant with comprehensive data protection policies, procedures, and regular audits

Security First

End-to-end encryption, secure cloud infrastructure, and regular penetration testing

Business Continuity

Robust disaster recovery plans with daily backups and 1-hour restoration capability

Regulatory Compliance

Full compliance with FCA requirements and financial services regulations

Staff Training

Regular security awareness training and strict access controls for all personnel

Risk Management

Comprehensive risk assessments and continuous monitoring of security threats

Nerys - Team Ningi working
Team smiling - Team Ningi working
Ningi office - Team Ningi working
Jym and Alex - Team Ningi working

Technical Excellence

Our infrastructure is built on industry-leading cloud platforms with multiple layers of security. We employ double encryption, continuous monitoring, and automated threat detection to ensure your data remains protected at all times.

  • AWS & MongoDB Atlas for secure, scalable infrastructure
  • Daily automated backups with point-in-time recovery
  • Kandji MDM for device management and security
  • Bitdefender anti-malware and threat prevention
  • Regular penetration testing and vulnerability scanning
  • Zero-trust architecture with principle of least privilege

Our commitment: We don't just comply with regulations – we build systems that anticipate future requirements and protect against emerging threats.

Ready to Learn More?

Download our comprehensive due diligence pack or speak with our security team