Diminish

Security

We build security into everything we do because your trust is paramount. Every product, process, and system is designed with the protection of your data at its core.

Security Features

Encryption

We keep data secure in transit and at rest. In transit, data is only accessible via TLS/SSL, and at rest, data is encrypted with AES256.

Data Security

Our people and systems can only access the data they need to do their job and we store your data with cloud providers who have top-tier physical security controls.

Highly Available

We use a global CDN to prevent network attacks and keep Diminish highly available.

Monitored and Resilient

Our threat detection, logging, and alerting systems notify our on-call teams about potential incidents.

Secure Development Practice

We peer review and test our code prior to release, including manual and automated checks for security issues.

Staged Releases

We only release software after qualifying it in development and staging environments.

In-App Permissions

Users can be assigned different roles to administrator or manage SaaS spending and view reports.

The EU General Data Protection Regulation

Diminish is committed to helping our users understand the rights and obligations under the General Data Protection Regulation (GDPR)

We have introduced tools and processes to ensure we comply with GDPR requirements.

To learn more about our GDPR compliance, please read our Privacy Link

Frequently Asked Questions

How Often Do You Conduct Security Assessments?

Diminish employs specialist external services at least once a year, and tools to conduct multiple different types of security assessments.

How Do You Store My Data?

We also run weekly vulnerability scans against our production environments, and engage external penetration testers to conduct multiple penetration tests throughout the year.