Cyber Essentials Plus
Visualise Info Ltd holds Cyber Essentials Plus. Certificate information is available through the registry badge.
A clear view of the security, infrastructure, privacy and assurance position supporting Helios. The information here is deliberately scoped: deployment-specific commitments are confirmed during procurement and contracting.
Last reviewed
Helios can be operated as a managed service or deployed into customer-controlled infrastructure. This Trust Centre separates company-level assurance from product capabilities and from commitments that depend on a particular deployment.
This page is an overview, not a certification statement, service-level agreement or substitute for contractual security and privacy terms.
Cyber Essentials Plus assurance and ICO registration are presented for what they are, without implying broader certification.
Visualise Info Ltd holds Cyber Essentials Plus. Certificate information is available through the registry badge.
Visualise Info Ltd is registered with the ICO under reference ZB727534. ICO registration is not a certification.
View registration
Our privacy position is framed around applicable UK data-protection requirements, including the UK GDPR, and distinguishes between the responsibilities of Visualise Info and those of each customer. The applicable privacy notice, Data Processing Agreement and customer agreement remain the authoritative sources for a specific processing context.
Helios uses a Kubernetes-based architecture that supports managed and customer-controlled deployment models.
UK-hosted managed infrastructure does not constitute a blanket data residency guarantee. Location and processing requirements are agreed for the relevant deployment.
Authentication and application authorisation are separate, connected responsibilities within Helios.
Helios uses Clerk for user authentication. Single sign-on and multi-factor authentication are supported.
Clerk identity feeds into the Helios permissions model, keeping sign-in separate from application access decisions.
Permissions can be applied across users and groups, sites, features, entities and content where the relevant Helios capability supports them.
Application assurance is supported through transport security, code analysis and controlled release practices.
Recovery arrangements are shaped around the infrastructure and operating model selected for each customer.
Backup policies are configurable to support deployment-specific requirements.
Disaster-recovery capability exists across hosted and local infrastructure. The exact recovery design depends on the deployment.
Availability depends on the selected deployment, supporting infrastructure and contractual terms. We do not publish a blanket Helios SLA.
Visualise Info can act as controller or processor depending on the processing context and the relationship with the customer.
/privacy-policy within
each Helios deployment
/eula within each Helios
deployment
The Website Privacy Policy and Helios Privacy Policy are separate documents. Helios links its Privacy Policy and EULA from the application Help and Settings areas.
For privacy questions or data-subject requests, email privacy@VisualiseInfo.com.
Procurement and security review can go beyond the public overview where a customer needs to assess Helios against its own requirements.
We can discuss the proposed Helios deployment, receive a security questionnaire and agree the appropriate evidence and review route.