Enterprise security your investment team can sign off on.
DNK is ISO 27001 certified, encrypted in transit and at rest, and runs on private, access-controlled infrastructure. Everything below is built to clear your vendor security review.
Compliance & certifications
Independent certification is the baseline for trusting a platform with your data. DNK holds the standard your security team already recognizes.
ISO 27001 Certified
Our information security management system is independently certified to ISO 27001, the internationally recognized standard for managing the confidentiality, integrity, and availability of information. It governs how we handle risk, access, vendors, and incidents across the company. We’re also aligned with Japan’s data-protection requirements, including the APPI.
Encrypted at every point.
Your data is hosted on AWS in Tokyo, with data residency in Japan, on private, access-controlled infrastructure — databases are never exposed to the public internet, and data is encrypted at every point between your browser and our database.
Private infrastructure
Hosted on AWS in Tokyo, access-controlled, deployed across zones for redundancy.
TLS everywhere
Web app and API alike — nothing moves in plaintext.
Encrypted storage
Reports and validated data protected on disk, not just in flight.
Backups & recovery
Regular encrypted backups, so data survives disruption.
Access control
Who can reach your data, and what they can see once they do.
Single Sign-On (SSO)
We connect your system to your identity provider so access follows your existing joiners-and-leavers process.
Multi-Factor Authentication
MFA adds a second factor at login. We’ll work with you to enable it for your organization.
Role-Based Access Control
Permissions are scoped by role, so users only see the data relevant to them.
Your data stays yours.
DNK is a custodian of your data, not an owner of it.
Access your data at any point.
Export anytime
Data can be exported on demand in the format that works best for you.
Deletion on request
When engagements end, DNK removes data in line with our documented retention terms.
Full traceability
Every transformation we apply to your reports is logged for full accountability.
Security review FAQ
The questions that come up most in vendor due diligence.
DNK is ISO 27001 certified. If your review needs the certificate or further detail, just reach out and we'll share it.
Data is encrypted in transit using current TLS standards, and encrypted at rest in storage and backups.
Access is protected by Single Sign-On and Role-Based Access Control, so users only reach the funds and data appropriate to their role. Multi-Factor Authentication is available and can be enabled for your organization on request.
You retain ownership of your data at all times. DNK acts as a custodian, not an owner. You can export validated data on demand, and at the end of an engagement your data is removed in line with our documented retention terms. Data is processed only to deliver DNK and is never sold; any subprocessors we rely on are bound by data-protection agreements that hold them to our security standards, and a current list is available on request.
We operate a documented incident response process as part of our ISO 27001-certified ISMS, covering detection, containment, investigation, and post-incident review. If an incident affects your data, we notify you in accordance with our agreement and Japan’s APPI requirements.
ぜひ、貴社のデータでお試しください
貴社の物件管理レポートを使って無料でお試しいただけます。 事前のお支払いは不要です。
担当者に相談
製品スペシャリストによるDNKのライブデモンストレーション。
貴社のデータで試す
貴社の物件管理レポートを実際に処理します。コミットメントは不要です。
本番稼働
数ヶ月ではなく数日で、チームの運用を開始できます。