How estana secures your data, infrastructure, access controls, and application workflows.
Last updated: January 2026
1. Our Commitment to Security
At estana, protecting your data is our top priority. We implement industry-leading security measures to ensure your recruitment data and candidate information remain safe and confidential.
2. Data Encryption
We use robust encryption to protect your data:
In Transit: All data transmitted between your browser and our servers is encrypted using TLS 1.3
At Rest: Stored data is encrypted using AES-256 encryption
Database: All database connections use encrypted channels
3. Infrastructure Security
Our infrastructure is built with security in mind:
Hosted on enterprise-grade cloud infrastructure with SOC 2 compliance
Regular security patches and updates applied promptly
Firewall protection and intrusion detection systems
DDoS protection and mitigation
Geographic data redundancy and backup systems
4. Access Controls
We implement strict access controls:
Role-based access control (RBAC) for all users
Multi-factor authentication (MFA) support
Secure session management with automatic timeouts
Audit logs for all sensitive operations
Principle of least privilege for internal access
5. Application Security
Our application follows security best practices:
Regular security audits and penetration testing
Secure coding practices and code reviews
Protection against OWASP Top 10 vulnerabilities
Input validation and sanitization
Secure API design with rate limiting
6. Data Privacy
We maintain strict data privacy standards including GDPR compliance for EU users, data minimization principles, and clear data retention policies. Your candidate data is never shared with third parties without explicit consent.
7. Incident Response
We have a comprehensive incident response plan in place. In the unlikely event of a security incident, we will notify affected users promptly and take immediate action to mitigate any risks.
8. Employee Security
All estana employees undergo background checks and security training. Access to production systems is limited and monitored, with regular access reviews conducted.
9. Reporting Security Issues
If you discover a security vulnerability, please report it responsibly to sales@estana.in. We appreciate your help in keeping estana secure.
Questions about this policy?
Reach out and we'll help you with any legal, privacy, or security questions.