How We Protect Your Data and Communications
SBS TELECOM applies a defence-in-depth approach to security. From network perimeter to application layer to data handling, each layer is designed to protect against internal and external threats.
Built on Resilient, Secure Infrastructure
Our platform is hosted in enterprise-grade data centre facilities with physical and environmental security controls. Infrastructure is architected for redundancy and resilience, with no single points of failure in critical message delivery paths.
Network security controls include perimeter firewalling, DDoS mitigation, and continuous traffic monitoring. All changes to production infrastructure follow a formal change management process with review and rollback procedures.
- Redundant, geographically distributed infrastructure with automatic failover
- Network-level firewalling and DDoS mitigation on all public endpoints
- IP whitelisting available for API and platform access
- Strict change management processes for all infrastructure modifications
- Continuous monitoring with automated alerting for anomalies
- Physical access controls and security at all data centre facilities
Protecting Data at Every Point
All data exchanged with our platform is encrypted in transit using TLS 1.2 or higher. We do not support legacy cipher suites or unencrypted connections to any public-facing endpoint.
Sensitive data at rest, including account credentials, API keys, and stored configuration, is encrypted using AES-256. Message content is retained only for the minimum period necessary for delivery processing and client-accessible logging.
- TLS 1.2+ encryption for all data in transit across APIs and platform interfaces
- AES-256 encryption for sensitive data at rest
- API credentials and secrets stored using one-way hashing where applicable
- Message content retained only for the minimum period required for delivery and logging
- Sub-account data isolation — customers cannot access other customers' data
- Data retention policies aligned to UK GDPR requirements
UK GDPR and Regulatory Alignment
SBS TELECOM is a UK-registered company and processes personal data in accordance with UK GDPR. We act as a data processor for enterprise clients and can provide Data Processing Agreements upon request.
We support clients in regulated industries — including financial services and healthcare — with the documentation, controls, and transparency they need to meet their own compliance requirements.
- UK GDPR-compliant data handling and processing practices
- Data Processing Agreements (DPAs) available for enterprise clients
- Designated data protection responsibilities within the organisation
- Regular internal audits of data handling and access controls
- Incident response and breach notification procedures in place
- Staff training on data protection obligations
Security Certifications
We maintain a programme of third-party security assessments and certifications to validate our security practices and provide independent assurance to enterprise clients. Please contact our sales team for details of current certifications and available security documentation.
Request Security DocumentationSecurity Is a Priority, Not an Add-On.
Enterprise clients can request detailed security documentation, penetration test summaries, and data processing agreements from our team.