Purpose-built for the firearms industry. ARC by AiOC employs a defense-in-depth strategy with multiple overlapping security layers to ensure your sensitive records remain protected.
| Layer | Protection | Description |
|---|---|---|
| 1 | Edge Protection | Traffic filtered at network edge |
| 2 | Encrypted Transport | All data encrypted using TLS 1.3 |
| 3 | Mutual Authentication | Certificate-based server-to-server auth |
| 4 | Network Isolation | Backend not directly internet-accessible |
| 5 | API Authentication | Secure token validation on all requests |
| 6 | Least Privilege | Minimum required permissions enforced |
| 7 | Data Isolation | Complete separation at database level |
| 8 | Audit Logging | Immutable record of all actions |
| 9 | Firewall Protection | Default-deny policies at all boundaries |
| 10 | Session Security | Short-lived tokens, continuous validation |
TLS 1.3 encryption
Database & storage
All data in Australia
Complete separation
MFA is mandatory for all accounts:
| Field | Description |
|---|---|
| WHO | User who performed the action |
| WHAT | Action (upload, search, delete, etc.) |
| WHEN | Timestamp |
| WHERE | IP address and session info |
| DATA | Full snapshot of affected records |
Security is a shared responsibility: