Trust

Security

How estana secures your data, infrastructure, access controls, and application workflows.

Last updated: January 2026

1. Our Commitment to Security

At estana, protecting your data is our top priority. We implement industry-leading security measures to ensure your recruitment data and candidate information remain safe and confidential.

2. Data Encryption

We use robust encryption to protect your data:
  • In Transit: All data transmitted between your browser and our servers is encrypted using TLS 1.3
  • At Rest: Stored data is encrypted using AES-256 encryption
  • Database: All database connections use encrypted channels

3. Infrastructure Security

Our infrastructure is built with security in mind:
  • Hosted on enterprise-grade cloud infrastructure with SOC 2 compliance
  • Regular security patches and updates applied promptly
  • Firewall protection and intrusion detection systems
  • DDoS protection and mitigation
  • Geographic data redundancy and backup systems

4. Access Controls

We implement strict access controls:
  • Role-based access control (RBAC) for all users
  • Multi-factor authentication (MFA) support
  • Secure session management with automatic timeouts
  • Audit logs for all sensitive operations
  • Principle of least privilege for internal access

5. Application Security

Our application follows security best practices:
  • Regular security audits and penetration testing
  • Secure coding practices and code reviews
  • Protection against OWASP Top 10 vulnerabilities
  • Input validation and sanitization
  • Secure API design with rate limiting

6. Data Privacy

We maintain strict data privacy standards including GDPR compliance for EU users, data minimization principles, and clear data retention policies. Your candidate data is never shared with third parties without explicit consent.

7. Incident Response

We have a comprehensive incident response plan in place. In the unlikely event of a security incident, we will notify affected users promptly and take immediate action to mitigate any risks.

8. Employee Security

All estana employees undergo background checks and security training. Access to production systems is limited and monitored, with regular access reviews conducted.

9. Reporting Security Issues

If you discover a security vulnerability, please report it responsibly to sales@estana.in. We appreciate your help in keeping estana secure.

Questions about this policy?

Reach out and we'll help you with any legal, privacy, or security questions.