Skip to content

Security is an engineering responsibility.

We build systems that may process sensitive operational, enterprise, or healthcare information. Security is therefore treated as a lifecycle requirement rather than a feature added after development.

Identity & Access

  • Role-based access controls
  • Least privilege
  • Strong authentication
  • Service identity
  • Environment separation

Data Protection

  • Encryption in transit
  • Encryption at rest where appropriate
  • Data classification
  • Backup controls
  • Retention controls

Application Security

  • Secure development practices
  • Dependency monitoring
  • Input validation
  • API protection
  • Secrets management

Infrastructure

  • Network controls
  • Container isolation
  • Patch management
  • Monitoring
  • Logging
  • Backup and recovery

Operations

  • Incident response
  • Change management
  • Vulnerability management
  • Access reviews
  • Audit logs

Report a security issue

If you believe you have identified a security vulnerability in a Zyenova system, contact our security team. Do not include sensitive production data in the initial message.

security@zyenova.co.zw