Security
Security you can bank on
PillarsCore is engineered for the trust demands of banks, MFIs, savings & loans companies, and credit unions across Africa. Security is not a feature — it is the platform.
Bank-grade security
Defence-in-depth architecture built for regulated financial institutions — network isolation, hardened infrastructure, and continuous monitoring.
Encryption
TLS 1.2+ in transit and AES-256 at rest for databases, backups, and object storage. Secrets are stored in a managed vault.
Immutable audit logs
Every sensitive action — logins, KYC edits, journal entries, permission changes — is recorded in tamper-resistant audit tables.
Role-based access
Granular RBAC with permission matrices, branch scoping, and multi-factor authentication. Least-privilege by default.
Backups
Encrypted point-in-time backups with regular restore testing. Customers can trigger on-demand exports of their data.
Disaster recovery
Documented RPO/RTO targets with multi-region replication and rehearsed recovery procedures for critical services.
AI security
The PillarsCore AI Assistant honours the same RBAC as the user, never returns data outside the caller's scope, and does not train on customer data.
Compliance standards
Aligned with GDPR, Ghana Data Protection Act (2012), and applicable central-bank guidance for cloud core banking.
Report a vulnerability
If you believe you have discovered a security issue in PillarsCore, please contact security@pillarscore.africa. We investigate every report and coordinate responsible disclosure. Do not conduct security testing against production without prior written authorisation — see our Acceptable Use Policy.
