Skip to main content

Security

Security is a foundational pillar of Mambu Insights. The platform is designed with robust controls to ensure your data is protected and access is managed securely.

Data isolation and tenancy

Your Mambu Insights environment runs on a dedicated instance, meaning your data and all related services are logically and physically isolated from those of other Mambu customers. Each customer has their own logically isolated tenant within the platform, addressable via a dedicated URL.

Data access and connectivity

  • No public exposure: Data is never exposed to the public internet. Access to the Mambu Data Lake is provided exclusively via secure private connectivity options like AWS PrivateLink.
  • Object storage access: Data access is limited to the object storage layer (S3). There is no direct access to the underlying databases, reducing the attack surface.
  • Role-based access control: Future phases will introduce granular role-based access control within the UI, allowing you to define which users can view, manage, or configure specific data products and platform settings.

AI and data privacy

Mambu ensures the privacy of your data when using Mambu Copilot's agentic AI capabilities.

  • Third-party LLM usage: Mambu uses secure services like AWS Bedrock to pre-train and power its AI agents.
  • No training on customer data: Your customer data will never be used to train or improve the underlying third-party large language models (LLMs). All session data remains private and is not persisted by the LLM provider.