PLATFORM SECURITY

We understand the importance of data security - that's why we leverage world-class frameworks.

Meridia offers a comprehensive, secure, and cutting-edge technology platform designed to streamline and enhance the due diligence process. Our solution integrates seamlessly with Microsoft Entra ID, providing robust authentication and access control features, while ensuring advanced data encryption and secure project management.

With UK-based development and support, we maintain compliance with local data protection regulations and offer regular security assessments to safeguard your sensitive information.

DATA PROTECTION

Keeping your client and project data secure.

Data Sovereignty

Store your data within your own Microsoft O365 instance, maintaining full control and compliance with data residency requirements.

Role-Based Access Control

Implement full RBAC to ensure users have appropriate access levels, maintaining data integrity and confidentiality throughout your diligence process.

Advanced Data Encryption

Benefit from full data encryption in transit using modern TLS, FIPS-compliant standards, and data encryption at rest for maximum security.

Secure Project Management

Enjoy secure project separation with options to archive or securely delete projects, ensuring sensitive data is properly managed post-assignment.

Microsoft Entra ID Integration

Leverage your existing Microsoft Entra ID for seamless Single Sign-On (SSO) and Multi-Factor Authentication (MFA), enhancing security and user experience.

Multi-Cloud Hosting

Leverage tier-1 cloud providers, primarily Azure UK South, with presence in AWS and Google Cloud, ensuring access to cutting-edge technologies.

ISO27001

Benefit from our focus on ISO27001, ensuring our information security management system meets rigorous international standards.

Cyber Essentials Certified

Trust in our commitment to security with Cyber Essentials certification, demonstrating our adherence to fundamental cybersecurity practices.

UK Development & Support

Rest easy knowing all development and support is managed from the UK, ensuring compliance with local data protection regulations.

Regular Security Assessments

Benefit from quarterly infrastructure security scanning and annual penetration testing by CREST-accredited auditors, with executive summaries available upon request.

Proactive Security Measures

Experience peace of mind with development-first security tools deployed within our CI/CD pipeline, monitoring and preventing vulnerabilities in each release.

No data use to train AI

The "best" available AI models are selected for the specific task being performed. None of your data, or your clients data, is ever used to train AI models.

DATA SECURITY

A secure, enterprise-grade due diligence platform.

Meridia leverages multi-cloud hosting across tier-1 providers, employs proactive security measures, and uses a serverless architecture to minimise attack surfaces. We prioritise data sovereignty by allowing you to store data within your own Microsoft O365 instance. Meridia's commitment to security is further demonstrated by our Cyber Essentials and focus on ISO27001 standards, ensuring that our information security management system adheres to rigorous international standards and best practices.

PLATFORM SECURITY
  • Microsoft Entra ID.
  • Data sovereignty by storing data within your own Microsoft O365 tenancy.
  • Full Role Based Access Control (RBAC).
  • Single Sign On (SSO).
  • Multi-factor authentication (MFA).
  • Full data encryption in transit using modern TLS, FIPS-compliant standards
CLIENT SECURITY
  • Each client instance is fully ringfenced from other clients.
  • Every project is segregated so there is never any “bleed” between assignments.
  • User access and privilege is defined through RBAC.
PROJECT SECURITY
  • ​Each engagement is a separate data set.
  • Project data is only availability to those users you allow.
  • Full data destruction features per project to allow compliance with your policies and your clients NDA / requests.​
DATA & AI MODELS
  • Neither your data, or your project data, is used to train or retrain AI models.
  • All project intelligence is ringfenced within the engagement.
  • Data is only available to those users and is lost post-delete​.
  • Specific models, tailored to your needs, are on the roadmap.
FAQ

Need clarification on our data and cyber security approach?

Does Meridia use your data to train or test models?

No, Meridia does not use your data to train or test generic models. Machine Learning can be used (with your consent) to train the model with project and within your own data. This learning would not be shared between other clients.

Does Meridia have access to your data?

Meridia does not use your data for any other purpose other than to provide the agreed service.

Does Meridia share our data with public AI models?

No, Meridia never shares data with public AI models. Every AI model used by the Meridia platform is a private version, hosted within the Meridia environment.

Are access and data processing activities being logged?

Access to data is logged, with a full audit and accountability trail.

What monitoring is in place to detect anomalies or suspicious behaviour?

We use multiple tools from our cloud providers, we use CloudFlare at the edge, Azure, AWS and Google clouds for the infrastructure and we aggregate the logs from the application.

What are the backup and DR measures for client data?

All data is encrypted and backed-up using our multi-cloud strategy. All versions of data within the system is fully version-controlled and can be rolled back to any point in time.

Which cloud environments does Meridia leverage?

Our primary environment is Microsoft Azure, but we also have a presence in AWS and Google Cloud to take advantage of their latest technologies and AI models.

Which AI models does Meridia support?

Our platform offers multi-model access, including full support for ChatGPT, Claude, Gemini, and Lamma, enabling diverse AI-powered functionalities. We can also plug-and-play new models as they come on-stream.

Does Meridia offer Secure Authentication?

Authentication is managed through your own Office365 and Azure Entra ID tenancy.

TESTIMONIALS

What our customers say

“Meridia transformed the way we carried out due diligences. It streamlined the whole process from end-to-end so that our team could focus on what really mattered in the transaction”

“We struggled with having to carry out diligence on M&A targets. On top of the day job, these projects would hit us fast, and as we're not doing diligence every day, I was always worried we'd miss something.”