Identity and Access
Company accounts use strong authentication, multi-factor authentication and role-based access. Administrative activity is separated from routine business use where practical.
Setter Industries applies practical security controls to business administration, software development and customer delivery. Contract-specific security instructions always take priority over our baseline arrangements.
Company accounts use strong authentication, multi-factor authentication and role-based access. Administrative activity is separated from routine business use where practical.
Supported operating systems, full-disk encryption, automatic security updates, endpoint protection and screen-lock controls are used on company-managed devices.
Source code is version controlled. Changes, testing and releases are traceable. Secrets and credentials are not committed to repositories.
Information is limited to what is required, stored only in approved locations and shared according to customer and contractual restrictions.
Business-critical information is backed up and recovery arrangements are maintained proportionate to the service and project risk.
Suspected compromise, loss or unauthorised disclosure is contained, recorded, assessed and escalated to affected customers where required.
AI tools may support public research, drafting, synthetic-data development and engineering productivity. Outputs are reviewed by a human engineer before use or delivery.
Classified, OFFICIAL-SENSITIVE, customer-confidential, personal or export-controlled information is not submitted to public AI services without explicit authorisation and an approved arrangement.
Report a suspected vulnerability or security concern to security@setterindustries.co.uk. Please provide only enough information to establish contact and assess the issue. Do not send classified information.