Security

Product: ROO Secure  ·  Effective: 2026-09-21  ·  Version: 2026.09

This page describes the security practices and principles that apply to ROO Secure (including the application or service identified as roosecure.com) operated by ROO Secure IT Solutions.

1. Our Approach

Security is foundational to everything we do. We combine offensive security thinking with practical engineering controls. All testing and assessment work is performed only under explicit written authorisation and defined scope.

2. Authorised Testing Only

3. Data Protection

4. Infrastructure & Application Security

5. Use of Automation and AI

Automation and AI may assist with analysis, triage, and reporting. All security-relevant decisions that affect risk remain under human oversight and are subject to explicit scope and authorisation.

6. Vulnerability Reporting

If you believe you have discovered a security vulnerability in ROO Secure or related systems, please report it responsibly to legal@roosecure.com. We ask that you:

We will acknowledge receipt and work with you in good faith.

7. Third-Party Dependencies

We monitor and manage third-party components and cloud services used by ROO Secure. We expect our providers to maintain appropriate security standards.

8. Continuous Improvement

Security is an ongoing process. We regularly review controls, learn from engagements, and improve our practices. Frameworks such as NIST CSF, OWASP, and CIS Controls inform our approach where relevant.

9. Contact

For security-related questions or to report a vulnerability:
ROO Secure IT Solutions
Email: legal@roosecure.com