Practice what you preach

Our own security

Anyone advising businesses on information security needs to have their own house in order. Tip ICT is not itself an ISO 27001-certified organisation, but does apply the principles from this standard — and puts them into practice daily, both in our own environments and those of our clients.

Working according to the principles of ISO 27001

Our own operations are structured along the lines of ISO 27001. This includes, but is not limited to:

  • Risk management: periodic analysis of threats and appropriate measures
  • Vulnerability management: actively tracking and resolving vulnerabilities in systems and software
  • Monitoring and patching: continuous monitoring and timely updates across all managed environments
  • Backup checks: ongoing verification that backups run and can actually be restored
  • Secure development: secure development principles applied to everything we build

Access security and password management

Access security and the management of login credentials are handled professionally:

  • Passwords are 100% managed with password managers at our end — and we only ever share client passwords this way, never by email or chat
  • All our environments are secured with multi-factor authentication (MFA) and conditional access
  • Security in multiple layers, including at both server and application level
  • Access based on the principle of least privilege: no one has more access than needed

Hosting and equipment

  • Our Plesk hosting server is equipped with ESET Endpoint Protection and Imunify360
  • All WordPress websites are additionally secured at site level with Wordfence
  • Backups run centrally in two locations: in the cloud via Acronis and locally on Synology
  • All computers we install are encrypted by default — and our own systems, of course, too

Demonstrable and approachable

Security isn't a promise for us, it's a way of working. Want to know how we've arranged specific matters, for example as part of your own supplier assessment or certification? Just ask — we're happy to explain our measures. Our insurance and data processing agreement are also transparently arranged.

We want to arrange this just as thoroughly for your business

Request an IT security quickscan