Security & Compliance

Enterprise-grade protection for legal data

SHERIA CENTRIC is designed for legal confidentiality requirements, operational resilience, and auditability — so your firm’s most sensitive data stays protected at every layer.

AES-256 at rest TLS 1.2+ in transit Full audit trail
AES-256Encryption at rest
TLS 1.2+Encryption in transit
DailyAutomated backups
100%Action audit coverage

Core safeguards

How we protect your firm’s data

Every layer of SHERIA CENTRIC is built with legal confidentiality and defensible governance in mind.

Encryption & transport security

Data is encrypted in transit and at rest using modern cryptographic standards. Sensitive workflows are protected with role controls and secure session handling.

Role-based access control

Define precise permissions for partners, associates, clerks, and finance personnel. Limit access to only what each role needs to see or change.

Audit-ready traceability

Every major action is logged with actor and timestamp details so firms can review changes and support compliance audits with confidence.

Backup & business continuity

Regular backups and recovery workflows support continuity in case of accidental deletion, operational issues, or unexpected outages.

Defense in depth

Four layers of protection

Security isn’t a single feature — it’s woven through every part of the platform stack.

Network

Secure transport, session management, and infrastructure hardening.

  • TLS 1.2+ everywhere
  • Secure cookie handling
  • DDoS protection

Application

Role-aware access and permission controls at every touchpoint.

  • RBAC by role & matter
  • Session timeouts
  • Input validation

Data

Encryption, versioning, and controlled sharing for all legal records.

  • AES-256 at rest
  • Document version control
  • Scoped client sharing

Governance

Audit trails and compliance reporting for legal accountability.

  • Full action logging
  • Export-ready reports
  • LSK-aligned controls

Regional compliance

Built for East African legal standards

Designed around LSK practice standards and compliance requirements across Kenya, Uganda, and Tanzania.

Kenya

Aligned with LSK practice standards, Data Protection Act requirements, and advocate confidentiality obligations.

Uganda

Supports Uganda Law Society guidelines with audit-ready records and role-based matter access controls.

Tanzania

Built for Tanganyika Law Society compliance with secure document governance and operational transparency.

Compliance focus: SHERIA CENTRIC is engineered to support legal confidentiality obligations with clear governance controls and defensible operational history.

Security FAQ

Common security questions

Where is our data stored?

Data is hosted on secure cloud infrastructure with encryption at rest and in transit. Backups are performed daily and stored in geographically redundant locations.

Can we control who sees what?

Yes. Role-based access control lets you define permissions by role and matter. Partners, associates, clerks, and finance each see only what their function requires.

What happens if someone deletes a file?

Document version history preserves prior versions, and the audit trail logs who deleted what and when. Daily backups provide an additional recovery layer.

Can we export our data if we leave?

Absolutely. You can export all matters, clients, and documents at any time. Your data belongs to your firm, not to us.

Need a detailed security review?

Request our security brief or schedule a call with our team to walk through encryption, access controls, and compliance features.