Security & Compliance
Enterprise-grade protection for legal data
SHERIA CENTRIC is designed for legal confidentiality requirements, operational resilience, and auditability — so your firm’s most sensitive data stays protected at every layer.
Core safeguards
How we protect your firm’s data
Every layer of SHERIA CENTRIC is built with legal confidentiality and defensible governance in mind.
Encryption & transport security
Data is encrypted in transit and at rest using modern cryptographic standards. Sensitive workflows are protected with role controls and secure session handling.
Role-based access control
Define precise permissions for partners, associates, clerks, and finance personnel. Limit access to only what each role needs to see or change.
Audit-ready traceability
Every major action is logged with actor and timestamp details so firms can review changes and support compliance audits with confidence.
Backup & business continuity
Regular backups and recovery workflows support continuity in case of accidental deletion, operational issues, or unexpected outages.
Defense in depth
Four layers of protection
Security isn’t a single feature — it’s woven through every part of the platform stack.
Network
Secure transport, session management, and infrastructure hardening.
- TLS 1.2+ everywhere
- Secure cookie handling
- DDoS protection
Application
Role-aware access and permission controls at every touchpoint.
- RBAC by role & matter
- Session timeouts
- Input validation
Data
Encryption, versioning, and controlled sharing for all legal records.
- AES-256 at rest
- Document version control
- Scoped client sharing
Governance
Audit trails and compliance reporting for legal accountability.
- Full action logging
- Export-ready reports
- LSK-aligned controls
Regional compliance
Built for East African legal standards
Designed around LSK practice standards and compliance requirements across Kenya, Uganda, and Tanzania.
Kenya
Aligned with LSK practice standards, Data Protection Act requirements, and advocate confidentiality obligations.
Uganda
Supports Uganda Law Society guidelines with audit-ready records and role-based matter access controls.
Tanzania
Built for Tanganyika Law Society compliance with secure document governance and operational transparency.
Security FAQ
Common security questions
Where is our data stored?
Data is hosted on secure cloud infrastructure with encryption at rest and in transit. Backups are performed daily and stored in geographically redundant locations.
Can we control who sees what?
Yes. Role-based access control lets you define permissions by role and matter. Partners, associates, clerks, and finance each see only what their function requires.
What happens if someone deletes a file?
Document version history preserves prior versions, and the audit trail logs who deleted what and when. Daily backups provide an additional recovery layer.
Can we export our data if we leave?
Absolutely. You can export all matters, clients, and documents at any time. Your data belongs to your firm, not to us.
Need a detailed security review?
Request our security brief or schedule a call with our team to walk through encryption, access controls, and compliance features.