Skip to content

Trust centre

Trust should be built into the engagement.

Our approach to privacy, information security, responsible AI, research ethics and quality shapes how we plan and deliver our work.

Corporate Governance

How Aunera is structured and governed as a business.

  • Defined leadership accountability for every engagement
  • A documented engagement governance framework, the Aunera Method, applied consistently
  • Clear decision rights and escalation paths on every engagement
  • Conflict of interest identification and management
  • Commercial and contractual governance for client engagements

Information Security

How we protect client data and systems throughout an engagement.

  • Least-privilege access to client systems and data
  • Controlled, logged access to shared environments
  • Secure collaboration and file-sharing practices
  • Confidentiality obligations built into every engagement and every team member's terms
  • A defined process for identifying and escalating security incidents
  • Separation between client and internal environments where applicable

Data Protection & POPIA

Our approach to personal information is guided by the principles of South Africa's Protection of Personal Information Act.

  • Processing personal information only for defined, disclosed purposes
  • Data minimisation, collecting only what an engagement requires
  • Defined retention periods and secure disposal practices
  • Respecting data subject rights, including access and correction requests
  • Restricting access to personal information to those who need it for the engagement

Research Governance & Ethics

Research at Aunera is governed with the same discipline as any regulated fieldwork.

  • Informed participation, respondents understand what they are consenting to
  • Confidentiality of respondent and stakeholder information
  • Anonymisation or de-identification of data where appropriate
  • Unbiased research and survey design
  • Data minimisation in collection and storage
  • Responsible, non-selective reporting of findings

Responsible AI

AI is adopted deliberately, with oversight, not by default.

  • AI applied only where it serves a defined business purpose
  • Human oversight retained over AI-supported decisions
  • Privacy considered in the design of any AI system we build or configure
  • Testing and validation before an AI system is deployed
  • Accountability for AI-supported outputs sits with Aunera and the client, not an automated system
  • Transparency with clients about where and how AI is used in an engagement

Software & Delivery Governance

How we govern the software and technology work we deliver.

  • Controlled development practices across defined development, testing and production environments
  • Code review for material changes
  • Access management for source code and infrastructure
  • A documented release and deployment process
  • Environment separation to reduce the risk of unintended change

Quality Management

Quality is designed into delivery, not checked for only at the end.

  • A defined test strategy for every delivery engagement
  • Functional, regression and, where relevant, performance testing before release
  • Release assurance checkpoints ahead of go-live
  • Structured defect management and resolution tracking
  • Continuous improvement built into how we deliver, not treated as a separate initiative

Business Continuity & Operational Resilience

How we plan to keep engagements running through disruption.

  • A defined approach to maintaining engagement continuity through disruption
  • Redundancy in team structure, so no engagement depends on a single individual
  • Secure backup practices for engagement-critical information
  • A documented approach to incident response and client communication during disruption

Third-Party & Supplier Governance

How we manage the subcontractors, tools and platforms involved in an engagement.

  • Due diligence on any third party or subcontractor engaged on client work
  • Confidentiality obligations extended to subcontractors
  • Client approval sought before introducing new third parties to sensitive engagements
  • Accountability for subcontracted work retained by Aunera

Supplier Due Diligence

Relevant corporate, compliance and supplier documentation can be provided during formal procurement, RFP and onboarding processes.

Request Supplier Information

Legal & policies

The documents that govern use of this website.

Privacy Policy

How we collect, use and protect personal information shared with us, and the choices available to the people whose information we hold.

Cookie Policy

What this website stores in your browser and why. No non-essential cookies are set until a tracking tool is explicitly configured.

Terms of Use

The terms that govern use of this website.

Accessibility

Our approach to building digital products and this website in line with WCAG 2.2 AA, so they work for as many people as possible.

Have a governance, privacy or security question?

Contact Aunera