Security & Compliance

Recruitment runs on trust. We safeguard every CV, note and placement record with enterprise‑grade security controls and independent certifications - so you can focus on hiring, not hosting.

ISO 27001 Certified
AWS Advanced Security
AES‑256 Encryption
GDPR & APP Aligned

Infrastructure Security

  • Hosted on Amazon Web Services (Sydney primary, Dublin optional).
  • Multi‑AZ architecture with automated fail‑over within 60 seconds.
  • AWS Shield & Web Application Firewall protect against DDoS and malicious traffic.
  • Data encrypted at rest (AES‑256) and in transit (TLS 1.2/1.3).
  • Separate VPCs for production, staging and development; least‑privilege IAM roles.

Application Security

  • Secure SDLC with automated static & dynamic code analysis and peer review gates.
  • OWASP Top 10 controls embedded throughout the stack.
  • MFA enforcement and granular role‑based permissions.
  • Field‑level audit trails record who viewed or changed data.

Data Privacy & Compliance

  • Australian Privacy Principles - Default compliance for all customers.
  • GDPR & UK‑GDPR - RecruitOnline Europe Ltd acts as Data Controller for EEA/UK clients.
  • CCPA/CPRA - We do not sell or share personal information for advertising.
  • Data Processing Addendum - Available for e‑signature upon request.
  • Privacy Policy - See our full policy for details on data collection and rights.

Sub Processors

Amazon Web Services

Hosting, storage, networking, email

Google

Workspace environment, online meetings, storage, analytics

Atlassian

Project management, customer support, system knowledgebase

Stripe

Subscription billing

Github

Code repository

Slack

Internal Messaging

Sinch

SMS/TXT messaging

Xero

Accounting

Kudosity

SMS/TXT messaging