Security
Security, Encryption and Compliance at Qwil
Trust Qwil to keep your data secure and meet your compliance requirements.
Qwil Messenger was built to meet modern communication expectations by combining the convenience of popular social platforms with the highest levels of security and regulatory compliance. Recognising the vulnerability inherent in traditional methods like email and SMS, our platform eliminates friction by providing a unified, secure channel for staff and clients. Every aspect of Qwil's architecture is designed with security as the foundation
How we keep Qwil Secure and Compliant
Data Protection and Encryption
All client and staff data is protected using end-to-end encryption, securing it both during transmission and storage within our environment. We employ data containerisation for staff devices and access controls that limit network access, ensuring the confidentiality and integrity of every message.
Controlled, Verified Participants
To prevent unauthorised access, Multi-factor Authentication (MFA) is required for users logging in from every device. Furthermore, role-based access controls are strictly enforced, allowing administrators to define precise permissions for what features and functions each user can access.
Information Governance
We maintain comprehensive and permanent audit trails that log every message and action, including read receipts, essential for compliance and record-keeping in regulated industries. Qwil also allows you to customise what can and can't be sent on the platform. Keeping you compliant with your regulatory body.
Security Certifications
.avif)
ISO 27001
ISO/IEC 27001:2022 which is the most rigorous global security standard for Information Security Management Systems (ISMS). Qwil Messenger is ISO 27001 certified since 2020.
Cyber Essentials Plus
Cyber Essentials Plus is an advanced internal and external technical audit and industry-supported certification scheme, backed by the UK government, confirming the effectiveness of Qwil Messenger’s cybersecurity measures against common attacks.
GDPR
Qwil Messenger has been built to ensure compliance with GDPR requirements. Qwil Messenger lets organisations choose the country or region where they want to store their encrypted data at rest.
DORA
Qwil Messenger’s design including data encryption, resiliency, ownership and operational security measures support the need for enhanced cybersecurity and resilience of EU financial entities under the Digital Operational Resilience Act.
.avif)
HIPAA
Qwil Messenger can be configured for HIPAA compliance, including electronically protected health information (e-PHI). BAA available upon request.
.avif)
CSA Certified
The world’s leading organisation dedicated to awareness of best cloud security practices. Qwil Messenger has completed their industry standard security questionnaire.
.avif)
FINRA
Qwil Messenger is FINRA 17a-4 configurable so your team can collaborate and still meet your compliance requirements.
Enterprise Grade Security & Frameworks
Our enterprise security model is driven by strict governance and risk management requirements to ensure compliance across industries. We deliver this through encryption of data both in-flight and at rest, secure network partitioning, tightly managed administrative access, and comprehensive system logging and alerting—providing a platform that is secure by design.