Security is the foundation.

Intentiv is built to protect sensitive client information and support your obligations under the AML/CTF Act.

  • AES-256encryption at rest
  • TLS 1.2+encryption in transit
  • Sydney, AUdefault data residency
  • Immutableaudit trail on every action

Layered encryption

All data is encrypted at rest with AES-256 and in transit with TLS 1.2 or higher. The most sensitive credentials carry application-layer encryption with dedicated, isolated key management, so a compromise of one layer does not expose another.

Australian data residency

Primary application infrastructure and databases run in Sydney. Verification data is stored in Australia by default, with the identity layer isolated in its own service with its own keys. Overseas sub-processors are listed in the Privacy Policy.

Access control

Role-based access governs what every user can see and do. Multi-factor authentication protects accounts and production systems, staff access follows least privilege, and every access event is logged.

Monitoring and auditing

Client edits, screening and risk decisions, document reviews and report exports are written to an immutable audit trail. Risk-based alerts give your compliance officer full visibility, with audit and compliance exports on demand.

Testing and response

Regular vulnerability assessments and penetration testing, with documented incident response procedures. A breach likely to cause serious harm is notified to affected individuals and the OAIC under the Notifiable Data Breaches scheme.

Compliance framework

Designed to align with AUSTRAC guidance for digital identity verification and record-keeping. Your records are protected by the Records Access Guarantee in our Terms of Service: always visible, always exportable.

Responsible disclosure

If you believe you have found a vulnerability in Intentiv, email support@intentiv.com.au. We investigate every report and acknowledge yours within two business days.

Report a vulnerability

Need more for your review?

Firm and Enterprise plans include support for security and IT due diligence.