Security by design
Security is considered from discovery and architecture through implementation, support and continuous improvement.
How ArchZen approaches identity, data protection, secure operations, resilience and responsible technology delivery.
Our commitments
Security is considered from discovery and architecture through implementation, support and continuous improvement.
Strong authentication, controlled access and least privilege are central to reducing business risk.
Monitoring, backups, patching and recovery planning support reliable and secure service delivery.
Logs, alerts and security reviews help identify issues, support response and improve controls over time.
ArchZen delivers managed IT, cybersecurity, cloud, AI and automation services with security built into the way solutions are assessed, designed and operated.
Our approach is risk-based. Controls are selected according to the organisation, information involved, platforms used, operational impact and applicable obligations.
We consider platform permissions, identity configuration, data flows, integration security, administrative access, logging and resilience when working with cloud services.
Where reasonably necessary, systems, logs and service activity may be monitored to maintain reliability, investigate incidents, prevent misuse, meet legal obligations and protect clients and infrastructure.
Monitoring is performed in accordance with applicable privacy obligations and contractual arrangements.
Supported software, timely security updates and remediation of material weaknesses are important parts of maintaining a secure environment.
We may recommend replacing unsupported systems, applying critical updates or implementing additional controls based on identified risk.
Backups and recovery processes help reduce operational impact from accidental deletion, system failure, cyber incidents and other disruptions.
Backup scope, retention, testing and recovery expectations depend on the service agreement and client requirements.
ArchZen works with established technology providers for cloud, productivity, security, backup, monitoring and related services.
We consider business suitability, security controls, privacy practices, access requirements and service dependencies when selecting or recommending providers.
Potential incidents are assessed according to their nature, impact, available evidence and contractual responsibilities.
Response may include containment, investigation, remediation, recovery, documentation and client communication. Regulatory or legal notification requirements are assessed where applicable.
Security is a shared responsibility. Clients are expected to protect credentials, use authorised services responsibly and cooperate with reasonable security recommendations.
No technology environment can be guaranteed to be completely secure. Threats, software, human behaviour and third-party services change continuously.
ArchZen applies reasonable controls based on the agreed scope, but outcomes also depend on client decisions, implementation timing, licensing, user behaviour and external providers.
To report a suspected security issue involving ArchZen systems or services, contact security@archzen.com.au with a clear description and relevant evidence. Do not access data, disrupt services or perform testing without written authorisation.
ArchZen Pty Ltd
Contact our team for clarification, privacy requests, security enquiries or policy-related questions.