Skip to content
rPResiliencePilot

Security & trust

Trusted where the rules are strictest

ResiliencePilot is built for organisations that get audited. The controls auditors and regulators ask about aren't add-ons here; they're the foundation.

How we protect your data

Six assurances, not a checklist

From sign-in to stored data to AI, the controls auditors ask about are built in, not bolted on.

rPResiliencePilotSign-in → access → EU-hosted platform
Your data stays in the EU
Enterprise sign-in
Sign in the way you already do
SAML 2.0OIDCMicrosoft Entra ID+ any SAML / OIDC provider
  • Single sign-on
  • Multi-factor authentication
auth
Role-based access
Enforced down to the action
AdminFull access
Risk OwnerEdit
ContributorLimited
AuditorRead-only
rbac
Microsoft Azure, Sweden Central
Hosted & processed in the EU, in-region
EU data residency
A database per tenant
Never a shared table
Customer A
Isolated database
Customer B
Isolated database
Customer C
Isolated database
Tamper-evident audit log
Every action, hash-chained
Time (UTC)ActorActionResultHash
2026-07-14 10:32Risk OwnerUpdated risk92AF…
linked to previous hash
2026-07-14 10:24AdminGranted access7BC4…
linked to previous hash
2026-07-14 09:51AuditorExported report4F21…
Each entry links to the one before, so any change is detectable
rAIley, under your control
Your AI co-pilot
AI enabled
  • Sees only your tenant’s data
  • It drafts; your team approves
  • Every interaction audit-logged
  • One switch disables all AI
  • Tenant isolation
    A database per customer
  • Enterprise access
    SSO, MFA, role-based
  • Tamper-evident records
    Hash-chained audit trail
  • EU data residency
    Azure Sweden Central
  • GDPR & your DPA
    Your processor under EU GDPR
  • Responsible AI
    rAIley under your control

A record you can trust

Every action, on a tamper-evident trail

Each entry is hash-chained to the one before it, so any change is detectable. Filter by user, action, resource or date, and export the trail your auditor asks for.

app.resiliencepilot.no
ResiliencePilot audit log: every action recorded with actor, result, severity and timestamp.
app.resiliencepilot.no
ResiliencePilot sign-in: enterprise Single Sign On alongside email and password.

Access you control

Sign in the way your enterprise already does

Enterprise SSO via SAML 2.0, OIDC and Microsoft Entra ID, with multi-factor authentication and role-based access enforced down to the action across every module.

Assurance, the honest version

We build to ISO 27001 and SOC 2 controls, and formal certification is underway. For our current security posture, our sub-processor list and our Data Processing Addendum, request the security pack and we’ll walk your team through it.