Trust Centre

Security, privacy, and reliability are at the heart of everything we do. As an ISO 27001:2022-certified provider of managed mobility and telecom expense management services, VoicePlus protects your data and infrastructure with the same rigour we bring to managing your communications β€” across endpoint services, device security, and branch connectivity. This Trust Centre sets out how we secure your information, respect your privacy, and keep your services running, with transparency at every step.

main-img

Security

VoicePlus employs a multi-layered security framework to protect your communications infrastructure, user data, and network access β€” 24 hours a day, 7 days a week.

πŸ”‘

Access Control

Role-based access control (RBAC), multi-factor authentication (MFA), and least-privilege principles govern system access, consistent with our ISO 27001 Access Control policies.

πŸ”

Data Encryption

Data is encrypted in transit using TLS 1.2+ (preferring TLS 1.3) and at rest using AES-256, consistent with our ISO 27001 cryptography policy (A.8.24).

πŸ› οΈ

Secure Development

Atrium is built under a documented secure development lifecycle, including secure coding standards, application security controls, threat modelling, and change management aligned to ISO 27001.

🩹

Patch Management

Systems are patched under defined SLAs based on severity, with updates tracked across servers, endpoints, and network equipment.

πŸ§ͺ

Vulnerability Management

We perform penetration testing on our Atrium production systems using an independent, ISO 27001-certified security testing platform, run at the end of each monthly sprint when product changes are released. Findings are logged as issues in Jira and remediated on a priority basis.

🚨

Security Monitoring

Our systems are monitored using Microsoft Azure Sentinel and Microsoft Defender, with alerting and incident tracking managed through Jira Service Management, backed by a defined incident-response procedure for timely triage and response.

🏒

Physical Security

Our infrastructure is hosted across ISO 27001-certified providers, including Macquarie Technology (Sydney data centre), Oracle Cloud Infrastructure, Microsoft Azure, and AWS, whose facilities feature controlled physical access, surveillance, and environmental controls.

πŸŽ“

Security Awareness

Staff and contractors complete ongoing security awareness training, reinforced by regular internal campaigns.

🧱

Network & Infrastructure Security

Our network is protected by Palo Alto next-generation firewalls with integrated intrusion prevention, securing connectivity between our offices and cloud environments (Macquarie Technology, Oracle), with Macquarie Technology providing a redundant managed firewall for our dedicated server infrastructure. Web-facing applications are further protected by Cloudflare's Web Application Firewall (WAF) and DDoS mitigation.

Privacy

We are committed to handling your personal information with transparency, care, and respect β€” in full compliance with Australian privacy law.

🚫 No Data Selling

We do not sell, rent, or trade your personal or communications data to third parties.

πŸ‘€ Your Rights

You may request access to, correction of, or deletion of your data. Contact our Privacy Officer at [email protected] to exercise these rights.

πŸ“‹ Privacy Policy

Our Privacy Policy sets out what data we collect, how we use it, and your rights.

Privacy Policy
πŸ›‘οΈ Australian Privacy Act Compliance

We operate in accordance with the Australian Privacy Principles (APPs) under the Privacy Act 1988, including data minimisation and purpose limitation.

Compliance & Certifications

VoicePlus maintains rigorous compliance with industry standards and regulatory frameworks relevant to Australian enterprise communications.

πŸ…
ISO 27001 Our ISO 27001:2022 certification covers all VoicePlus business processes and services
πŸ…
Essential Eight We align our controls to the Essential Eight maturity model.
πŸ…
GDPR Aligned Our data-handling practices support GDPR obligations for relevant EU data transfers.

Reliability & Uptime

Enterprise communications can't afford downtime. Our infrastructure is designed for resilience, with redundancy at every layer.

24/7
Network Monitoring
15 min
Critical Incident Response Target
99.6%
Portal Uptime (business hours)

πŸ—‚οΈ

Backup & Recovery

Customer data is backed up with automated recovery verification, confirming backups are complete and restorable. Backup integrity is monitored on an ongoing basis.

πŸ”„

Redundant Architecture

Our infrastructure is geo-distributed across multiple cloud providers, reducing the impact of any single localised outage.

πŸ”§

Proactive Maintenance

Scheduled maintenance and defined patch-management SLAs keep infrastructure current and secure, with maintenance communicated to customers in advance.

Data Practices

We believe in clear, honest data practices. Here's how we handle your data across its entire lifecycle.

πŸ“¦

Data Portability

You can export your data in standard formats; we support portability and will not hold your information hostage.

πŸ—ΊοΈ

Data Residency

Customer data is stored in Australian data centres by default, with specific residency options available on request.

πŸ—‘οΈ

Data Retention & Deletion

Defined retention schedules apply to all data categories. On contract termination, customer data is securely deleted within 30 days.

Trust Resources

Download our security and compliance documentation, or contact our team directly with any questions.

πŸ“œ

Privacy Policy

Read our full Privacy Policy, covering all aspects of personal data handling. Privacy Policy

πŸ…

ISO 27001:2022 Certificate

Download our current certification. ISO 27001:2022 Certificate

πŸ“‹

Statement of Applicability (SoA)

Our ISO 27001 Statement of Applicability is available to qualified customers on request

3 Strategies to Reduce Telecom Cost

Contact Us



Certificate