Secure Development Lifecycle
How security is built into every stage of SeqOps development, for procurement and security reviews.
Security is integrated into every stage of how SeqOps is built and run — from architecture and design through development, testing, deployment, and operations. This approach is aligned with ISO/IEC 27017 and ISO/IEC 27034.
Lifecycle Stages
- •Architecture and design — Security requirements are part of the design from the start.
- •Development — Security is built into how the platform is developed.
- •Testing — Security is part of how changes are tested.
- •Deployment — Security controls apply when changes are released.
- •Operations — Security continues through how the platform is run.
Alignment, Not Certification
Our platform is designed in alignment with internationally recognised security frameworks. These guide our architecture and operational controls but should not be interpreted as formal certifications. See SeqOps Information Security & Compliance Approach.
How Data Is Handled
SeqOps collects and processes metadata only — no customer business data or primary application data. Data is encrypted in transit (TLS), cloud credentials are encrypted before storage, and data is stored and processed within the EU. Upon account termination, access is revoked and the related metadata is scheduled for secure deletion in accordance with the applicable retention period. Deletion is a requested and separately approved action, logged end to end, and blocked while a legal hold is in place.
For Procurement and Security Reviews
For security questionnaires or procurement reviews, contact support@seqops.io or use the Contact Us page.