Security

Security begins with a narrow scope.

Operating records deserve careful handling. We begin by defining what the work requires, who needs access, and how the resulting material will be reviewed and delivered.

Working principles

Specific commitments belong to a specific engagement.

Security requirements vary with the records, systems, people, and scope involved. RBA discusses the applicable handling and access arrangement before client work begins rather than relying on broad claims that may not fit the engagement.

01

Start narrow

Access should match the agreed question and scope, not expand by default.

02

Use what is needed

Request the records necessary to support the work and identify anything that is not required.

03

Keep boundaries clear

Client information belongs to the engagement. Public examples use clearly labeled synthetic data.

04

State the arrangement

Data handling, access, retention, and delivery expectations should be discussed for the specific engagement.

Public website boundary

The public site contains no client operating data.

The analytical example on this website is synthetic and is labeled that way. Authorized clients use the separate, invite-only Client Portal for the client relationship and delivery experience.

Discuss the scope

Have a security question?

Tell us what the engagement may involve. We will discuss the relevant requirements directly.

Talk With Us Already a client? Open Client Portal ↗