Security & Data Protection
PlantRev is designed for business-critical maintenance information using layered application, access and data controls.
Access and tenant controls
- Authenticated application access for protected functions.
- Role-based permissions designed around job responsibilities.
- Client and site scoping designed to separate customer records.
- Restricted administrative functions and audit records for key actions.
Data and transport
PlantRev uses encrypted HTTPS transport and cloud-hosted transactional data and storage. Operational backup practices support recovery and continuity planning.
Industrial integrations
Supported industrial-control integrations are designed around read-only access where appropriate unless a different integration is expressly engineered and approved.
Customer responsibilities
Customers are responsible for controlling authorized users, promptly removing access that is no longer needed, protecting credentials, maintaining appropriate endpoint and network security, and independently maintaining safety-critical and production-critical controls.
Security incidents
Diamond F maintains processes to investigate suspected security incidents and take appropriate containment, recovery and notification actions based on the circumstances and applicable obligations.
Responsible disclosure
Suspected security issues should be reported through PlantRev support. Sensitive architecture, credentials, security test details and exploit information should not be posted publicly.
