Security you can audit, not just take our word for.
Fleet data is operational data. It moves people, cargo, money and lives. Here is how Intellitech VOS™ handles it.
Encryption
All traffic between your operators, drivers and VOS™ moves over TLS 1.2 or higher, with modern cipher suites. All data at rest is encrypted with AES-256 at the storage layer. Cross-region backups are encrypted before they leave the primary region.
Access control
Role-based access with per-operation permissions. Each user sees only the vehicles, drivers and modules assigned to their role. Every access decision is logged. Multi-factor authentication is available and can be enforced per role.
Audit trail
Every mutating action — dispatch, work order, approval, permission change — writes to an append-only audit log with actor, timestamp, IP and the before/after payload. Audit records are queryable through the operator UI and exportable for regulator requests.
Hosting and data residency
Primary infrastructure runs on AWS in dedicated tenants for Chile and Ecuador. Data residency is enforced per tenant: Chilean fleet data stays inside AWS South America; Ecuadorian data stays in the same footprint. Cross-tenant queries are blocked at the database layer, not just the API.
Availability
Multi-AZ database replication with continuous backups and point-in-time recovery. Read replicas for reporting workloads. Load balancers with automatic failover. The platform is designed for 99.95% uptime; the last twelve months of availability are available on request.
Vendor security and secrets
Third-party integrations (WhatsApp, Perfex CRM, OCPP charging vendors) authenticate over signed OAuth or scoped API keys. Secrets are stored in AWS Secrets Manager, rotated per policy, never checked into source control. Every deploy runs through automated dependency and static-analysis checks.
Incident response
Reachable 24/7 via contacto@intellitech.cl. Confirmed security incidents follow a documented response programme: contain, notify affected tenants within the applicable regulatory window, remediate, publish a public post-mortem when the root cause allows.
Compliance frameworks
Chilean Law 19.628 on the protection of private life is the baseline for personal-data handling. Res. 38 audit trails are supported by the driver, shift and incident modules. SOC 2 alignment is on the roadmap; we can share our current control mapping with prospects under NDA.
Reporting a vulnerability
If you believe you have found a security issue in Intellitech VOS™, please email contacto@intellitech.cl with a clear description and reproduction steps. We do not currently run a paid bug bounty programme, but we do acknowledge responsible disclosures publicly with the reporter’s permission.