Dimeri Trust Center

Dimeri is committed to protecting your enterprise risk data with the highest standards of security and privacy. Our platform is built with defense-in-depth security architecture — from input validation to enterprise-grade SSO — ensuring your risk management data remains confidential, available, and tamper-proof.

As an ERM platform handling sensitive organizational risk data, we go beyond baseline compliance. Every feature is designed with security-first principles, continuous monitoring, and proactive threat mitigation.

Security Overview

Dimeri's security posture is built on four pillars, designed to protect enterprise risk data at every layer of the platform.

Application Security
Input sanitization, XSS prevention, rate limiting, secure headers, and stateless authentication to mitigate common attack vectors.
Access Control & Audit
Role-based permissions (Owner, Admin, Member, Viewer), full activity audit trail, and secure session management.
Data Protection
TLS encryption in transit via hosting and database providers, encryption at rest provided by database infrastructure, automated backups, and strict data isolation per workspace.
Enterprise Authentication
SAML SSO via Okta, Azure AD, Google Workspace; JWT + refresh token rotation; Google OAuth.

Key Security Metrics

100% of API endpoints protected by authentication middleware
All user inputs validated and sanitized server-side
Role-based access enforced at both API and UI layers
Activity logging on every create, update, and delete action
Enterprise SSO available for Business plan customers