SmartAssessor - Cyber Security

Sendient has meticulously designed SmartAssessor with data security and privacy as foundational pillars, ensuring every aspect of the platform aligns with the highest standards of protection. This commitment to safeguarding information goes beyond mere compliance; it is a core principle that drives our innovation. By embedding these values into the very architecture of SmartAssessor, we offer our clients unwavering confidence that their sensitive data is fully secure. Importantly, this means that under no circumstances will their data be utilized for training any Generative AI models, providing an additional layer of assurance in a rapidly evolving digital landscape.

AI and Data Protection

As organisations increasingly transition from traditional, people-centric processes to automated, orchestrated, and AI-driven systems, the importance of cyber security cannot be overstated. The move to digital platforms, especially those powered by AI, opens up new avenues for efficiency and scalability, but it also introduces heightened risks related to data protection, privacy, and overall security. Ensuring these risks are managed effectively is critical for organisations aiming to safeguard sensitive data and maintain trust with clients and stakeholders.

Data protection privacy concept. GDPR. EU. Cyber security network. Business man protecting data personal information on tablet. Padlock icon and internet technology networking connection on digital dark blue background.

Tokenisation: Protecting Sensitive Data

Tokenization provides a powerful approach to securing sensitive data by replacing it with non-sensitive equivalents, or tokens, which have no exploitable value. In the SmartAssesor platform, tokenization is used to ensure that sensitive data is never shared with  3rd party AI providers.  This means that sensitive data is never used for training AI models, and it reduces the risk of the data being intercepted and refactored. This technique is effective in protecting many data types, including personal information, financial data, and health records, offering a robust layer of security that significantly reduces the risk of data breaches. 

Encryption: Securing Data in Transit and at Rest

Encryption is a foundational component of cyber security, ensuring that data is unreadable to anyone who does not have the appropriate decryption key. For organisations transitioning to AI-driven processes, it is crucial that all data, whether in transit or at rest, is encrypted using strong encryption protocols. Encrypting data in transit protects it from interception as it moves across networks, while encryption at rest secures stored data from unauthorised access. Together, these measures ensure that sensitive information is protected at all stages of the data lifecycle.

Strong Role-Based Access Control (RBAC)

The implementing of strong Role-Based Access Control is core component of SmartAssessor in managing who has access to specific data and functionalities within the platform. RBAC allows organisations to restrict access based on the user's role within the organisation, ensuring that only authorised personnel can view or manipulate sensitive data. This reduces the risk of insider threats and minimises the potential for human error, which can lead to data breaches. 

Penetration Testing and Web Application Testing

To ensure that SmartAssessor is secure, Sendient engages in regular penetration testing and web application testing with CREST approved companies. These tests simulate cyber-attacks to identify and address vulnerabilities before they can be exploited by malicious actors. By continually seeking out and resolving these vulnerabilities, Sendient can stay ahead of potential threats and maintain a high level of security. These reports can be shared with clients, to demonstrate that the platform is maintained to the highest levels of cyber security practice. 

Alignment with ISO 27001 and Cyber Essentials Plus

Sendient has built SmartAssessor to align with international security standards such as ISO 27001 and Cyber Essentials Plus. ISO 27001 offers a comprehensive approach to establishing, implementing, maintaining, and continually improving an information security management system. Cyber Essentials Plus, focuses on protecting organisations from common cyber threats. By aligning with these standards, Sendient can demonstrate their commitment to cyber security and ensure that their AI-driven processes are underpinned by robust security practices. 

Multi-Factor Authentication and Single Sign On

Multi-Factor Authentication (MFA) adds an additional layer of security by requiring users to provide multiple forms of verification before gaining access to SmartAssesor. This approach significantly reduces the risk of unauthorised access, even if login credentials are compromised.  SmartAssessor also integrates with several industry recognised SSO deployments, including those from Microsoft and Google.  This allows employees to access SmartAssessor in a secure and consistent fashion, with centrally controlled authentication and authorization functions being delivered from the core. 

Secure Data Enclaves and Generative AI

Secure data enclaves exist within the SmartAssessor platform to ensure client data is always separately partitioned from other client datasets. These enclaves are secured with unique encryption keys to ensure that sensitive data is processed in isolated, highly secure environments, preventing any form of unauthorised access.  SmartAssessor has been architected to ensure that sensitive data cannot be transmitted to 3rd party generative AI models. Many frontier models can pose unique security risks if not managed correctly. By keeping sensitive data out of AI training datasets and models, Sendient can mitigate the risk of data leaks or misuse. 

Screenshot-2024-08-19-110928-1024x575

Like What You See?

Get In Touch And See How We Can Help Your Business

Screenshot-2024-08-19-111059-1024x578

Data security, privacy, and cyber resilience are not just considerations—they are fundamental to Sendient’s ethos and are architected into SmartAssessor from the ground up. Every aspect of the platform is designed with these principles in mind, ensuring that as organisations transition to AI-driven processes, they do so with confidence in their data protection. Smart Assessor’s robust security framework reflects Sendient’s unwavering commitment to safeguarding sensitive information, providing a secure foundation that empowers organisations to innovate and scale without compromising on trust or security. 

Scroll to Top