Security & trust

Every firm’s data, walled off and wholly its own

izzytap keeps each firm’s clients, documents and records in a sealed tenant — isolated at the database, enforced on every read and write, and never visible across the wall to another firm.

How your firm’s data is protected

Row-level isolation

Every record is bound to your firm and screened off at the database — independently and adversarially tested.

Encrypted storage & backups

Data is encrypted at rest and in transit, with automatic backups so nothing is lost.

Full audit trail

Every action is logged — who did what, to which record, and when — for compliance and review.

Role-based access

Your team sees only what their role permits, from managing partner to onboarding staff.

Proven, not just promised

Isolation is only as good as the tests behind it. On every change to the platform, an adversarial suite tries to break the wall — one firm attempting to read, edit or download another firm’s data — and the change ships only when every one of those attempts fails.

So the boundary between firms is not a claim in a policy document. It is verified in code, on each release, and treated as a gate rather than an assurance.

Compliance posture

AML tooling, your MLRO in charge

Screening and case records are documented and efficient — your MLRO stays responsible for the decisions, as the law requires.

Data residency & handling

Clear handling standards for where client data lives and how it moves, built for UAE regulatory expectations.

Yours to export or delete

Export or delete your firm’s data on request — it belongs to you, not to the platform.

Talk to us about your security review

Whether you need documentation, isolation detail or a walkthrough for your security team, we are ready to answer.