Trust Centre
Security, compliance and transparency behind RapidP2P
RapidP2P supports critical finance processes and the information that moves through them. Explore how Efficiency Leaders approaches cloud infrastructure, information security, access control, third-party risk, integrations and service support.
Security, Privacy & Compliance
Our Approach to Security & Compliance
Protecting customer information requires more than technology alone. It depends on clear governance, controlled access, secure infrastructure, independent assurance and disciplined operational practices.
Efficiency Leaders applies defined security and compliance controls across the way RapidP2P is hosted, managed and supported. Our approach is designed to protect customer information, reduce security risk and provide finance, IT, security and procurement teams with the assurance they need when assessing RapidP2P.
Explore our Trust Centre
Find the information you need
Third-Party Risk Management
Understand how Efficiency Leaders assesses and manages suppliers and service providers and how relevant security and privacy requirements are addressed.
Review the support and escalation processes available to RapidP2P customers.
Security & Compliance FAQs
Detailed answers for your due-diligence review
Infrastructure
How is RapidP2P hosted?
Where is RapidP2P hosted?
What service model does RapidP2P utilise?
Can Efficiency Leaders prevent data flow outside of agreed geographic boundaries?
RapidP2P is fully hosted on the Microsoft Azure platform. Data at-rest and in-transit is fully contained within Microsoft’s Australian data centres. At the customer’s request, Efficiency Leaders can implement geo-blocking.
What are RapidP2P’s capabilities in relation to scaling?
Are operating systems hardened to provide only the necessary ports, protocols, and services?
Security
Does Efficiency Leaders conduct formal third-party penetration testing?
How does Efficiency Leaders manage patching and security?
RapidP2P is deployed on serverless architecture on the Microsoft Azure cloud platform. All patching and security are handled automatically by Microsoft. In the event of a RapidP2P patch, Efficiency Leaders’ support team manages and schedules this in consultation with the client.
Does Efficiency Leaders have anti-virus and anti-malware software installed on all RapidP2P systems?
RapidP2P is deployed on serverless architecture on the Microsoft Azure cloud platform. Security is handled on this platform automatically by Microsoft. Efficiency Leaders has up-to-date virus protection on all staff and system machines used in software development and day-to-day operations.
Is Efficiency Leaders certified for security compliance?
Does RapidP2P have audit logging in place to capture events and actions?
Does Efficiency Leaders have controls in place to ensure that log files are viewable only to administrators with the appropriate permissions?
Does Efficiency Leaders report observed or suspected information security weaknesses or breaches?
Does Efficiency Leaders have a Data Loss Prevention (DLP) programme in place?
Does Efficiency Leaders have a formal information security governance structure with a designated security owner?
Third-Party Risk Management
Does Efficiency Leaders have a formal third-party risk management programme?
Yes. Efficiency Leaders maintains a documented Third-Party Management Policy governing the selection, onboarding, assessment, and ongoing management of suppliers and service providers. Third parties are assessed based on the nature of the services they provide and the associated business, security, privacy, and operational risks. Security and confidentiality obligations are incorporated into supplier agreements where appropriate, and suppliers are reviewed periodically throughout the relationship.
Do third-party contracts include the same security and privacy obligations as Efficiency Leaders' own programme?
Efficiency Leaders incorporates appropriate security, confidentiality, privacy, and data protection requirements into supplier agreements based on the services provided and the associated risk profile. Supplier relationships are periodically reviewed to ensure they continue to meet Efficiency Leaders’ security and compliance expectations.
Access
Does RapidP2P support Single Sign-On (SSO)?
Does RapidP2P have a formal user registration and de-registration process?
Does RapidP2P support Role-Based Access Control (RBAC)?
Integration
Does RapidP2P require integration with the client’s cloud-based or on-premise infrastructure?
Does RapidP2P offer APIs to extend integration capabilities?
Does Efficiency Leaders provide technical solutions for data import, export, and interoperability with third-party applications?
Support & Maintenance
What is Efficiency Leaders’ Service Level Agreement (SLA)?
Is the process for calling on technical support defined, including the escalation process?
Security documentation