Our approach to security
ExamRevolution takes the protection of student data and course content seriously. Below is a high-level summary of the commitments we make. We deliberately do not publish the technical specifics of our controls.
Account security
- • Staff and instructor accounts require multi-factor authentication.
- • Sessions are time-limited and re-authentication is required for sensitive actions.
- • Unusual sign-in activity is monitored and recorded.
Data protection
- • Data is encrypted in transit and at rest.
- • Access to student data is restricted on a need-to-know basis.
- • Flight-school staff can only see their own students.
Course content
- • Course videos and materials are protected against unauthorised distribution.
- • Content is traceable back to the account it was accessed from.
Backups & recovery
- • Regular automated backups with tested recovery procedures.
- • Additional safeguards are taken before significant platform changes.
Accountability
- • Privileged actions are recorded in an internal audit log.
- • Access is reviewed periodically.
Shared responsibility
We handle the platform, infrastructure, and staff access. Students are responsible for keeping their own credentials safe and reporting anything suspicious to us straight away.
Reporting a concern
If you believe you've found a security issue, please email support@examrevolution.com. We'll acknowledge receipt within 2 business days. Please give us a reasonable window to investigate before any public disclosure.
This page is maintained by ExamRevolution and describes our security posture at a high level. It is not a certification of compliance with any specific standard. We update this page as our practices evolve.