WHAT WE DO / MANAGED INFRASTRUCTURE · 03 · OPERATE
Security Engineering
Access control, secrets handling and data protection built into the system, not bolted on.
EVIDENCE · ACCESS REVIEW AND AUDIT
REAL INTERFACE STATES · ILLUSTRATIVE RECORDS
| Identity | Role | Scope | Last used |
|---|---|---|---|
| ops@northgate | Operator | domains · DNS | 2 h ago |
| finance@northgate | Approver | orders | 3 d ago |
| svc-portal | Service | read: assets | today |
| contractor-04 | Viewer | expired | 41 d ago |
Reviewed on change and on scheduleRevoke expired
14:02:05 dns.record.updated TXT @ · ops@northgate · change #1204 ✓ 13:41:22 domain.transfer.requested northgate-holdings.co · awaiting registrar ack 11:08:10 order.approved ORD-0412 · northgate-holdings.io · 1 yr · by finance@northgate 11:07:58 order.quoted ORD-0412 · retail quote issued once 09:30:00 renewal.reminder fundcircle-capital.com · due 21 Sep 2026 · action needed 03:00:12 backup.restore-test records-db · passed · 4 m 12 s ✓
FIG. 07Structure of a delivered system
WHAT IT CHANGES
- 01Control who can access what
Define clear identities, roles, permissions, and administrator controls across applications and infrastructure.
- 02Protect sensitive information
Use appropriate encryption, secrets management, logging, and data-handling controls.
- 03Reduce security risk during change
Add checks to development, deployment, and operations so security is part of the process rather than an afterthought.
COMMON USES
- ·Customer and partner portals
Accounts, requests, documents and status in one place.
- ·Internal administration systems
Roles, permissions and an audit trail of who did what.
- ·Applications handling confidential or regulated data
Access limited by role; every access recorded.
For technical teams
- Least-privilege roles and service identities, secrets kept out of code and browsers, encryption in transit and at rest, dependency and change review.
NEXT STEP
