Security and trust

Protect access. Preserve accountability. Support responsible operations.

Azina365 is designed with practical safeguards for the sensitive member and financial workflows your organization manages every day.

A layered approach

Security is built around people, permissions and traceability.

No single control is enough. Azina365 combines authentication, role-based access and activity records to support accountable use.

A

Authentication safeguards

Account authentication, password protection, login monitoring and supported multi-factor verification help reduce unauthorized access.

R

Role-based access

Authorized administrators can align user permissions with responsibilities so staff access is limited to the work they are expected to perform.

T

Traceable activity

Audit information and controlled workflows support review of important activity and changes within the platform.

Data protection

Protect information while it moves and while it is managed.

Azina365 uses encrypted connections for information exchanged between supported clients and services. Access controls and operational procedures support protection of hosted information.

Specific hosting, retention, backup and recovery arrangements can vary by service configuration. Your account representative can provide the details applicable to your organization.

Core protection practices

  • Encrypted connections for supported web and API traffic
  • Credential and session safeguards
  • Role and permission management
  • Additional confirmation for supported sensitive actions
  • Operational logging and review capabilities

Operational resilience

Plan for continuity, not only prevention.

Security also means being prepared to detect issues, investigate activity and restore normal service through documented operational processes.

01
Monitoring

Review relevant authentication, activity and service signals.

02
Response

Investigate reported concerns and coordinate corrective action.

03
Recovery

Apply applicable backup and recovery procedures for the configured service.

Compliance support

Technology that supports your obligations.

Azina365 provides tools that can help organizations maintain records, control access and prepare applicable reports. Your organization remains responsible for its own legal and regulatory compliance.

Kenya Data Protection

Privacy, authorized access and responsible handling practices can support obligations under Kenya’s data protection framework.

SASRA-focused reporting

Applicable plans include supported regulatory report formats to assist eligible SACCOs with their reporting processes.

Audit readiness

Permissions, transaction records and audit information can support internal review and external assurance processes.

References to standards or regulations describe support capabilities and do not by themselves represent a certification, legal opinion or guarantee of compliance.

Security questions

Clear answers before onboarding.

Can every staff member see all information?

No. Access is managed through roles and permissions that authorized administrators configure around staff responsibilities.

Does Azina365 support multi-factor verification?

Supported authentication journeys can require an additional one-time verification step. Availability and configuration should be confirmed during onboarding.

How are sensitive actions handled?

Selected high-impact operations can require additional confirmation and are supported by traceable activity records.

Where can we obtain service-specific security details?

Email security@azina365.com or speak with your account representative. We can discuss the controls and service arrangements relevant to your organization without publishing sensitive operational details.

How should a security concern be reported?

Send a responsible, confidential report to security@azina365.com. Include the affected service and enough detail for the team to investigate; do not include member financial data unless requested through a secure channel.

Talk to the right team

Need to complete a security or vendor review?

Contact us with your organization’s questions and we will provide appropriate, non-public information through the right channel.