Technology ยท Security & Compliance

Security built for maritime operations.

IMO MSC.428(98) requires cyber risk management in the ISM SMS. IACS UR E26/E27 mandates network resilience for new builds from July 2024. Volaxin’s security addresses both regulatory requirements and the operational reality of vessels at sea.

End-to-end encryption

Certificate-based authentication for all ship-shore data. TLS 1.3 in transit. AES-256 at rest. Key rotation per policy. Encryption metadata preserved through offline periods and re-authenticated on reconnect.

Role-Based Access Control

Granular permissions at module, function, record, and field level. Segregation of duties enforced (raiser cannot approve). Delegation for leave / sea-service. Immutable audit trail on every read, write, and permission change.

Offline data protection

Vessel database encrypted at rest. No sensitive data in browser caches or temp files. Session tokens invalidated on device loss. Remote-wipe capability for lost vessel devices.

IMO MSC.428(98) alignment

Cyber risk management integrated into the ISM SMS through VOLAX SHEQ. Vulnerability register, cyber-incident response plan, cyber-drill scheduling, crew cyber awareness training, and evidence pack for cyber assessments.

IACS UR E26 & E27 support

Network resilience requirements for new builds. Segregated network zones supported. Data-flow validation. Change-control workflow for onboard IT / OT changes.

Continuous monitoring

Fleet-wide security event monitoring from the office. Anomaly detection on user access patterns. Vessel-instance integrity checks. Third-party SOC integration where required.

Cyber-risk management, evidence-ready

Book a security briefing with our maritime cyber specialists. Bring your cyber assessment findings — we’ll show you the platform view that answers each control.