Restricted system · Authorised operators only
The OmniSentinelGrid console is closed to the public internet audience.
This system carries multi-tenant security telemetry, incident records and customer exposure data. Access is granted by invitation only and every attempt to enter is recorded. Unauthorised access is an offence under the Cybercrimes Act 19 of 2020.
No self-registration
Accounts exist only when an administrator issues an invitation. Public sign-up is disabled at platform level.
Mandatory authenticator
Every operator must enrol a time-based authenticator app. The console is unreachable at single-factor assurance.
Hardened credentials
14-character minimum, mixed character classes, and breached-password rejection against known compromise datasets.
Automatic lockout
Five failed attempts lock the address for 15 minutes and raise a critical event in the audit trail.
Least privilege
Administrator, analyst, auditor and viewer roles are held separately from the profile and enforced in the database.
Full audit trail
Sign-ins, failures, lockouts, role changes and invitations are recorded for POPIA and ISO/IEC 27001 evidence.
