loader
How we protect your business Back to Security

Security Monitoring

ConvergeX watches the platform around the clock so unusual activity is spotted early, your invoices keep flowing, and our team can respond quickly if something needs attention—without you having to manage security tooling yourself.

What this means for you

When you use ConvergeX for e-invoicing, you rely on us to keep the service available and your business data safe. Security monitoring is how we do that behind the scenes—watching logins, API usage, invoice processing, and the cloud systems that host the platform.

As a customer, you benefit because we aim to:

  • Spot suspicious sign-in or API activity before it affects your account
  • Keep the platform stable so you can submit invoices on time
  • Investigate and fix issues quickly if something unusual happens
  • Run the service using practices aligned with recognised information-security standards

How we monitor the platform

Multiple layers of visibility

We do not rely on a single alarm. ConvergeX uses a layered approach so problems can be detected whether they show up at the network edge, in user access, on servers, or inside the invoicing application itself:

Network
Perimeter & traffic
  • Web Application Firewall (WAF) monitoring
  • Network traffic visibility using VPC Flow Logs
  • Detection of abnormal traffic patterns
Access
Sign-in & permissions
  • Monitoring IAM user activity and policy changes
  • Detection of unauthorized access attempts
  • Tracking authentication and authorization events
Infrastructure
Servers & platform health
  • Monitoring server health and performance
  • Detection of abnormal system behavior
  • Infrastructure-level telemetry and alerts
Application
Invoicing & your data
  • Login failures and MFA anomalies
  • API misuse and abnormal request patterns
  • Invoice workflow irregularities
  • Data processing anomalies

Where alerts come from

Our operations team combines three main sources:

Cloud monitoring (AWS)

Industry-standard tools for logs, metrics, and threat detection on the infrastructure that hosts ConvergeX.

Application activity

The platform records sign-ins, API calls, invoice jobs, and integrations so issues can be traced to a specific event.

ConvergeX operations dashboard

Our internal team uses a central view to review health and security signals—this is not part of your customer portal.

Cloud protection (AWS)

ConvergeX runs on Amazon Web Services (AWS), the same class of cloud used by many enterprises worldwide. AWS provides built-in monitoring and threat-detection services that we configure for the platform.

Services we use (in plain terms)

AWS CloudTrail

API activities and user actions

Amazon CloudWatch

Logging, metrics, and alerting

Amazon GuardDuty

Threat detection & anomalies

AWS Config

Configuration compliance

AWS Security Hub

Aggregated security findings

AWS WAF

Web attack protection

VPC Flow Logs

Network traffic analysis

What we look for

Together, these tools help us:

  • Notice unauthorised or unusual access attempts
  • See when API usage looks out of the ordinary for a customer
  • Detect network or web attacks aimed at the service
  • Catch misconfiguration before it becomes a risk
  • Route alerts to the right people on our team

Your account, invoices & API usage

What we watch inside the platform

Beyond the cloud layer, ConvergeX monitors activity that matters to your business—so problems with sign-in, integrations, or invoice submission are visible to our team.

Examples include:

Failed login attempts & MFA failures
API key usage & abnormal patterns
Invoice processing failures & retries
User activity & account status
Workflow anomalies in the invoice lifecycle

Types of events we investigate

Sign-in & verification

  • Many failed login attempts on an account
  • Repeated invalid MFA codes (possible account takeover attempt)

API & permissions

  • API calls that should not be allowed for a given key or user
  • Attempts to access features outside a user’s role

Invoice processing

  • Invoices that fail or retry unusually often
  • Patterns that might indicate an integration or data issue on your side

Unusual data activity

  • Sudden spikes in creating, updating, or deleting records
  • Access patterns that do not match normal use

Our operations team can trace these events in logs and take action—for example tightening access, contacting your admin, or fixing a platform issue. You do not need to monitor these systems yourself.

If something goes wrong

How serious is an alert?

Level Description
Critical Urgent—e.g. possible account compromise; we act immediately
High Repeated suspicious activity; investigated promptly
Medium Something to watch; may not affect your service yet
Low Routine information for our operations team

How our team responds

When an alert fires, ConvergeX follows a clear process so issues are handled consistently:

1
Detect — automated monitoring or application logs
2
Assess — decide how urgent it is for customers
3
Contain — limit impact (e.g. block suspicious access)
4
Diagnose — find the root cause
5
Fix — restore normal service
6
Improve — update monitoring so similar issues are caught earlier

If an incident affects your organisation, we will communicate through your usual support channels when appropriate.

Activity records & audit trails

Important actions on the platform are recorded so we can investigate questions about who did what, and when. These records are stored securely, access is limited to authorised ConvergeX staff, and retention follows our security and legal requirements.

This supports dispute resolution, troubleshooting integration issues, and protecting the integrity of your invoicing history.

Standards we align with

Our monitoring practices are designed with recognised frameworks in mind, including ISO/IEC 27001 areas such as logging, incident handling, access monitoring, and ongoing improvement—so enterprise and tax-compliance expectations are met in a structured way.

Watching systems & access
Responding to incidents
Protecting your data
Improving over time

You get a managed service: we operate and monitor ConvergeX so your team can focus on invoicing, not running security infrastructure.

In summary

Always on

Monitoring runs continuously across cloud and application layers.

Smart detection

Automated tools plus application logic flag unusual behaviour.

Expert response

Our security and operations teams investigate and resolve issues.

Questions about security or a specific incident? Contact us and we will help.