This page provides a general overview of security practices for a U.S.-based facility management software company. Specific controls may vary by environment, customer agreement, and implementation.
Our security approach
Worknest is designed to support facility management and field service teams that rely on accurate work orders, vendor records, location data, invoices, documents, and operational communications. We use layered administrative, technical, and organizational safeguards intended to protect customer data and maintain reliable service.
Access controls
We use role-based access controls to help customers limit access by job function. Administrative users can assign roles and permissions so employees, vendors, and managers see the information needed for their responsibilities.
Customers are responsible for managing their own users, disabling accounts that no longer need access, and choosing appropriate permissions for their organization.
Data protection
We use reasonable safeguards designed to protect data in transit and at rest, including secure transport protocols where applicable. Access to production systems is limited to authorized personnel with a business need.
Application security
We follow secure development practices intended to reduce common application risks. These practices may include code review, dependency updates, input validation, authentication controls, logging, and monitoring for unusual activity.
Infrastructure and monitoring
Our hosting and infrastructure providers maintain physical and environmental controls for the systems they operate. Worknest uses monitoring and operational processes designed to identify service issues, investigate incidents, and maintain platform availability.
Vendor management
We may use trusted service providers to operate, secure, monitor, and support our website and platform. We evaluate providers based on business need, security expectations, and the type of information involved.
Incident response
If we identify a security incident affecting customer data, we will investigate, take appropriate containment and remediation steps, and notify affected customers as required by applicable law or contract.
Customer responsibilities
Customers help keep their Worknest environment secure by using strong passwords, protecting credentials, assigning least-privilege roles, reviewing user access, training staff, and promptly reporting suspected security issues.
Reporting a security concern
If you believe you have found a vulnerability or security issue, contact security@worknest.com with enough detail for our team to investigate.