Security and sovereignty

No data leaves the perimeter.

In sensitive environments, encrypting a call is only part of the requirement: complete logical and physical control of the platform, access and data governance are decisive. With 4DEFOPS, the customer retains that control.

Deployment

Within your infrastructure

Runs entirely within the customer's network—private cloud or physical infrastructure—under its controls and requirements. Compatible with air-gapped environments and no external telemetry.

Governance

Of access and data

Customer-controlled identity and keys through SSO and external KMS. Least-privilege access and granular ABAC. Complete, end-to-end ownership of all information.

Compliance

Auditable by the customer

Traceability and chain of custody for every operation. Encryption in transit, at rest and in use, with EPICOM hardware encryption compatibility.

Security architecture

Combined controls, end to end.

Protecting data in transit (TLS, DTLS-SRTP), at rest (AES-256-GCM with customer-managed keys) and in use (privacy mode, redaction and least-privilege access).

Deployment
On-premises · Air-gapped compatible · No external telemetry
Media encryption
WebRTC · DTLS-SRTP · End-to-end AES-256-GCM
Hardware encryption
EPICOM EP960 / EP430T compatible
Authentication
SSO SAML 2.0 · LDAP/AD · MFA available
Access control
Granular ABAC · External KMS integration
Connectivity
Offline-native · Satellite · 4G/5G · LAN · Wi-Fi

Let us review your security requirements.

Request a technical session to assess the appropriate deployment architecture for your organisation.

Request a demonstration