Security Policy

Security Policy

Effective Date: July 13, 2026

Last Updated: July 13, 2026

1. Purpose

This Security Policy describes the administrative, technical, and organizational measures used to protect Nile Nexus ERP systems and customer information.

2. Scope

Applies to the website, web application, mobile applications, APIs, cloud infrastructure, integrations, backups, and support systems.

3. Security Controls

The platform uses encryption in transit, secure authentication, role-based access control, audit logs, least-privilege principles, and regular software updates.

4. Password & Authentication

Users must maintain strong passwords. Multi-factor authentication should be enabled where available.

5. Data Protection

Sensitive information is protected using appropriate encryption, secure storage, access controls, and monitoring.

6. Incident Response

Security incidents are investigated, documented, contained, and resolved according to internal response procedures.

7. Business Continuity

Encrypted backups, disaster recovery planning, and service restoration procedures are maintained.

8. User Responsibilities

Users must protect credentials, report suspicious activity, and avoid sharing accounts.

9. Policy Review

The policy is reviewed periodically to address evolving threats and compliance requirements.

10. Contact

Security questions or vulnerability reports should be submitted through the official Nile Nexus ERP support channels.