Skip to main content
Security & Trust

Security and governance, engineered into the platform

This page is maintained by PMCT Global Hub to describe the enabled platform capabilities supporting security, governance and auditability. It does not constitute an independent certification.

Identity & Access

Authentication and session management are delivered through a managed identity provider. Roles are organised across platform, tenant and professional taxonomies, and authorisation is enforced both at the application layer and through row-level security in the database.

Tenant Isolation

PMCT Global Hub is multi-tenant by design. Every shared service operates with default-deny row-level security, and access to tenant data is mediated through explicit memberships and entitlements.

Maker / Checker & Separation of Duties

Commercial and operational changes that require dual control are routed through the platform Workflow Engine, which enforces that the checker cannot be the maker.

Immutable Audit Trail

Privileged actions across the platform are recorded in a hash-chained, append-only audit repository, providing tamper-evident history suitable for internal and external review.

Secrets & Configuration

Secrets are held in a metadata-governed secrets service with documented rotation and break-glass procedures. Application code holds publishable identifiers only.

Observability

Structured logging, metrics and health monitoring are provided through a dedicated observability service, separate from the audit trail and consumed by platform operations.

Ready to see the platform in action?

Request a governed demonstration or speak to our team about your module roadmap.