1. Overview
[Owner to supply: rkito's security approach in a paragraph]
2. Data protection
[Owner to supply: encryption in transit and at rest, tenant isolation]
3. Access control
[Owner to supply: authentication, roles, audit logging]
4. Infrastructure
[Owner to supply: hosting, regions, backups]
5. Compliance
[Owner to supply: certifications and audits held or in progress]
6. Responsible disclosure
[Owner to supply: how to report a vulnerability]