Security

Nabuza is built on Azure with practical security defaults: encrypted connections, encrypted storage, strict access controls, and tenant-isolated data storage.

How we protect your data

Plain-English security commitments you can share with your team.

Tenant-isolated storage

Each tenant's data is logically separated and access is enforced by application-level controls. Your data is never accessible to other customers.

Encryption in transit

HTTPS/TLS for data moving between your browser and Nabuza.

Encryption at rest

Azure Storage server-side encryption and Azure SQL transparent data encryption.

Secrets management

Credentials and tokens stored in a secrets vault (Azure Key Vault).

Least-privilege access

Services use managed identities where possible and restrict direct human access.

Private networking posture

Our infrastructure runs in private subnets with no direct internet exposure. Access is controlled via managed endpoints and firewall rules.

Backups and recovery

Reliable data protection backed by Azure infrastructure.

Database backups

Azure SQL provides automated backups and point-in-time restore.

File storage durability

Azure Storage provides high durability with built-in redundancy for all stored data.

Questions about security?

We can share an architecture overview and answer security questionnaires on request.

Book a Demo