T&S Asset Management

Trust center

The security principles behind TS LMS and TS HRM + EWA.

01

Least privilege and multi-factor authentication

Staff get only the access their job needs, and sign-in requires multi-factor authentication.

02

Encryption in transit and at rest

Data is encrypted in transit with TLS 1.3 and at rest with AES-256; sensitive customer fields are encrypted field by field.

03

Tamper-evident audit log

We record who did what and when, in a way that shows if a record is altered afterwards. Money movements need two people.

04

Security in development

Code review, automated vulnerability scanning and separate development, test and production environments are part of every release.

05

Regular vulnerability assessment

We assess the system for vulnerabilities regularly and fix what we find by priority.

06

Backup and disaster recovery

Data is backed up in encrypted form, and a recovery plan covers disasters and outages.

07

Contractor management

Development and operations contractors sign confidentiality agreements, and their access is limited to what they need.

08

A separate environment per lender

The platform runs on Google Cloud. Each lender runs in its own environment; data is not shared with other lenders.

Designed with reference to Japan’s FISC security guidelines for financial institutions.

Detailed architecture and operating controls are shared individually with clients in an active engagement, under NDA. Request a demo