HomeWhat We DoAboutOur WorkSupplier InfoCareersDiscuss a Requirement

Proportionate controls from day one

Setter Industries applies practical security controls to business administration, software development and customer delivery. Contract-specific security instructions always take priority over our baseline arrangements.

Identity and Access

Company accounts use strong authentication, multi-factor authentication and role-based access. Administrative activity is separated from routine business use where practical.

Device Security

Supported operating systems, full-disk encryption, automatic security updates, endpoint protection and screen-lock controls are used on company-managed devices.

Development Controls

Source code is version controlled. Changes, testing and releases are traceable. Secrets and credentials are not committed to repositories.

Data Handling

Information is limited to what is required, stored only in approved locations and shared according to customer and contractual restrictions.

Backups and Continuity

Business-critical information is backed up and recovery arrangements are maintained proportionate to the service and project risk.

Incident Response

Suspected compromise, loss or unauthorised disclosure is contained, recorded, assessed and escalated to affected customers where required.

AI-Assisted Tools

AI tools may support public research, drafting, synthetic-data development and engineering productivity. Outputs are reviewed by a human engineer before use or delivery.

AI Restrictions

Classified, OFFICIAL-SENSITIVE, customer-confidential, personal or export-controlled information is not submitted to public AI services without explicit authorisation and an approved arrangement.

Responsible security contact

Report a suspected vulnerability or security concern to security@setterindustries.co.uk. Please provide only enough information to establish contact and assess the issue. Do not send classified information.