Northwind Cloud

Security Center

Avatar

Security controls

Review each domain to verify enforcement status and configuration before your quarterly audit.

SSO provider
Okta
MFA enrollment
98%
Session length
8 hours

All members authenticate through your identity provider. Password login is disabled and mandatory MFA is enforced for every account, including service users with elevated scopes.

Customer data is encrypted at rest with AES-256 and in transit via TLS 1.3. Customer-managed keys rotate every 90 days; the next rotation is scheduled automatically and surfaces an alert if a policy drifts out of compliance.

Every privileged action is written to an append-only log. Exports stream to your SIEM over HTTPS and include actor, target, IP, and full request context for forensic review.