Enterprise • Roles • Encryption • Acceptance testing

Secure Safety Software deployment
for technical documentation

We help you deploy Safety Software so that access to technical documentation is tied to the right user, role, and organisation. We configure the permissions available within your plan, verify the key management system (KMS) for supported fields, and give your team clear rules for day-to-day operation.

A system account does not automatically put documentation access under control.

Your organisation needs to know who may work with technical data, who grants access, and what happens when someone changes role or leaves. Without those decisions, even a good tool cannot prevent excessive permissions or blurred accountability.

As part of the service, we configure the roles and access controls supported by your selected plan, run a controlled encryption and decryption test on supported fields, and review the application diagnostics. We record the results in clear acceptance documents, so your team knows exactly what has been implemented—and what still needs action from your organisation.

Configuration, acceptance testing, and practical guidance for administrators and users

What your team receives after deployment

Scope and data record
We document the relevant system areas, data types, owners, and the key assumptions behind the deployment.
Role and access matrix
We record roles, permissions, and—where supported by the plan—access to specific projects and audits.
Encryption configuration and testing
We verify the key management system configuration and run a controlled encryption and decryption test.
Protected-field map
We identify which fields use encryption and clearly record which data remains outside that protection.
Diagnostic report
You receive the application check results and a prioritised action list covering urgent issues, important actions, and improvements.
Operating guide
We set out how to grant and revoke access, review permissions, and respond to key or configuration problems.

How a secure deployment works

1

Understand the data and the team

We establish what data will be managed in the system, who will use it, and which Safety Software plan applies.

2

Design the access model

We define roles, permissions, administrator responsibilities, and the required level of access to system resources.

3

Configure and test

We configure the agreed controls, verify encryption for supported fields, and run the available diagnostic checks.

Acceptance and handover

We review the results, open risks, actions assigned to your organisation, and the rules for ongoing operation.

A secure deployment needs clearly defined boundaries

We configure the controls available in Safety Software. We do not present this work as a full audit of your organisation or infrastructure.

What the service includes
What the service does not include
Roles and permissions
Configuration of the roles, permissions, and access controls available within the client’s plan.
Employment decisions, contracts, internal policies, or approval of the user list.
Keys and encryption
Configuration of the key management system and encryption testing for supported application fields.
Any claim that all files, attachments, or the organisation’s entire infrastructure are encrypted.
Diagnostics
A one-off report based on the available checks of application configuration and operation.
Continuous 24/7 monitoring, a security operations centre, or SOC incident response.
Security assessment
A list of identified configuration issues and recommended actions.
A penetration test, ISO 27001 audit, certification, or an opinion on NIS2 compliance.

Frequently asked questions about secure deployment

Will every file and item of data be encrypted after deployment?
No. The key management system (KMS) protects selected fields defined within the application architecture. As part of the service, we provide a protected-field map and clearly identify the data that falls outside this protection.
Does the service include penetration testing of the application or infrastructure?
No. We review the Safety Software configuration and run the diagnostic tests available within the application. Penetration testing requires a separate scope, dedicated tools, and a suitably authorised specialist.
Will we receive confirmation of compliance with ISO 27001 or NIS2?
No. This service is neither an ISO 27001 audit nor an opinion on NIS2 compliance. It helps you bring a specific application configuration under control and highlights matters that require further assessment.
Can a user be restricted to a single project or audit?
Yes, where the account has granular access enabled. We confirm the plan and configuration before including that requirement in the deployment scope.
What do we receive at the end?
Your team receives a role and access matrix, encryption test results, a protected-field map, a diagnostic report, a prioritised action list, and an operating guide for day-to-day use.

Deploy Safety Software with access and protection boundaries that leave no room for guesswork.

Start with a practical discussion about your data, users, system plan, and the environment in which your team works.

Discuss your deployment configuration

Before work begins, we document the supported controls, acceptance tests, exclusions, and responsibilities assigned to the client.

Practical articles on risk assessment, requirements and documentation — useful context for your team.