Security at Jobrods
We treat your career data with the seriousness it deserves. Here's how we keep it safe.
Protecting your data is fundamental to Jobrods. This page summarizes the technical and organizational measures we use to keep your information secure.
01. Data encryption
All data is encrypted in transit using TLS 1.2+ and at rest using AES-256. Your CV, profile, and match history are never stored in plain text, and sensitive fields are isolated from general application data.
02. Access controls
Access to production systems is restricted to a small number of authorized engineers, governed by AWS IAM roles with single sign-on and multi-factor authentication. We follow the principle of least privilege and log all administrative access via AWS CloudTrail.
03. Cloud infrastructure
Jobrods is built on Amazon Web Services (AWS). We run our application and matching pipeline in AWS data centres located in the UK and EU (eu-west-2 and eu-central-1), using services such as Amazon EC2, Amazon RDS, Amazon S3, and AWS Lambda. Data at rest is encrypted with AWS KMS, infrastructure is provisioned as code and regularly patched, and our network is segmented across private subnets to limit the blast radius of any single component.
04. Resilience & backups
We rely on AWS multi-Availability-Zone deployments for high availability, with automated, encrypted backups and point-in-time recovery for our databases. Backups are tested regularly so we can restore service quickly in the event of a failure.
05. Data minimization
We collect only the data needed to generate accurate matches and explanations. You can export or permanently delete your data at any time, and we retain it no longer than necessary.
06. Responsible disclosure
We welcome reports from security researchers. If you believe you have found a vulnerability, please email security@jobrods.com with the details. We commit to acknowledging valid reports promptly and will not pursue legal action against good-faith research.
07. Compliance
Jobrods processes personal data in line with the UK GDPR and Data Protection Act 2018. Our Privacy Policy describes your rights and how to exercise them.
Jobrods Ltd., registered in England & Wales, Company No. 15728041. For any questions about this document, contact legal@jobrods.com.