What this means for you
When you use ConvergeX for e-invoicing, you rely on us to keep the service available and your
business data safe. Security monitoring is how we do that behind the scenes—watching
logins, API usage, invoice processing, and the cloud systems that host the platform.
As a customer, you benefit because we aim to:
- Spot suspicious sign-in or API activity before it affects your account
- Keep the platform stable so you can submit invoices on time
- Investigate and fix issues quickly if something unusual happens
- Run the service using practices aligned with recognised information-security standards
How we monitor the platform
Multiple layers of visibility
We do not rely on a single alarm. ConvergeX uses a layered approach so problems
can be detected whether they show up at the network edge, in user access, on servers, or inside
the invoicing application itself:
Network
Perimeter & traffic
- Web Application Firewall (WAF) monitoring
- Network traffic visibility using VPC Flow Logs
- Detection of abnormal traffic patterns
Access
Sign-in & permissions
- Monitoring IAM user activity and policy changes
- Detection of unauthorized access attempts
- Tracking authentication and authorization events
Infrastructure
Servers & platform health
- Monitoring server health and performance
- Detection of abnormal system behavior
- Infrastructure-level telemetry and alerts
Application
Invoicing & your data
- Login failures and MFA anomalies
- API misuse and abnormal request patterns
- Invoice workflow irregularities
- Data processing anomalies
Where alerts come from
Our operations team combines three main sources:
Cloud monitoring (AWS)
Industry-standard tools for logs, metrics, and threat detection on the infrastructure that hosts ConvergeX.
Application activity
The platform records sign-ins, API calls, invoice jobs, and integrations so issues can be traced to a specific event.
ConvergeX operations dashboard
Our internal team uses a central view to review health and security signals—this is not part of your customer portal.
Cloud protection (AWS)
ConvergeX runs on Amazon Web Services (AWS), the same class of cloud used by many
enterprises worldwide. AWS provides built-in monitoring and threat-detection services that we configure
for the platform.
Services we use (in plain terms)
AWS CloudTrail
API activities and user actions
Amazon CloudWatch
Logging, metrics, and alerting
Amazon GuardDuty
Threat detection & anomalies
AWS Config
Configuration compliance
AWS Security Hub
Aggregated security findings
AWS WAF
Web attack protection
VPC Flow Logs
Network traffic analysis
What we look for
Together, these tools help us:
- Notice unauthorised or unusual access attempts
- See when API usage looks out of the ordinary for a customer
- Detect network or web attacks aimed at the service
- Catch misconfiguration before it becomes a risk
- Route alerts to the right people on our team
Your account, invoices & API usage
What we watch inside the platform
Beyond the cloud layer, ConvergeX monitors activity that matters to your business—so
problems with sign-in, integrations, or invoice submission are visible to our team.
Examples include:
Failed login attempts & MFA failures
API key usage & abnormal patterns
Invoice processing failures & retries
User activity & account status
Workflow anomalies in the invoice lifecycle
Types of events we investigate
Sign-in & verification
- Many failed login attempts on an account
- Repeated invalid MFA codes (possible account takeover attempt)
API & permissions
- API calls that should not be allowed for a given key or user
- Attempts to access features outside a user’s role
Invoice processing
- Invoices that fail or retry unusually often
- Patterns that might indicate an integration or data issue on your side
Unusual data activity
- Sudden spikes in creating, updating, or deleting records
- Access patterns that do not match normal use
Our operations team can trace these events in logs and take action—for example tightening access,
contacting your admin, or fixing a platform issue. You do not need to monitor these systems yourself.
If something goes wrong
How serious is an alert?
| Level |
Description |
| Critical |
Urgent—e.g. possible account compromise; we act immediately |
| High |
Repeated suspicious activity; investigated promptly |
| Medium |
Something to watch; may not affect your service yet |
| Low |
Routine information for our operations team |
How our team responds
When an alert fires, ConvergeX follows a clear process so issues are handled consistently:
1
Detect — automated monitoring or application logs
2
Assess — decide how urgent it is for customers
3
Contain — limit impact (e.g. block suspicious access)
4
Diagnose — find the root cause
5
Fix — restore normal service
6
Improve — update monitoring so similar issues are caught earlier
If an incident affects your organisation, we will communicate through your usual support channels
when appropriate.
Activity records & audit trails
Important actions on the platform are recorded so we can investigate questions about who did what,
and when. These records are stored securely, access is limited to authorised ConvergeX staff, and
retention follows our security and legal requirements.
This supports dispute resolution, troubleshooting integration issues, and protecting the integrity
of your invoicing history.
Standards we align with
Our monitoring practices are designed with recognised frameworks in mind, including
ISO/IEC 27001 areas such as logging, incident handling, access monitoring, and
ongoing improvement—so enterprise and tax-compliance expectations are met in a structured way.
Watching systems & access
Responding to incidents
Protecting your data
Improving over time
You get a managed service: we operate and monitor ConvergeX so your team can focus on invoicing,
not running security infrastructure.
In summary
Always on
Monitoring runs continuously across cloud and application layers.
Smart detection
Automated tools plus application logic flag unusual behaviour.
Expert response
Our security and operations teams investigate and resolve issues.
Questions about security or a specific incident? Contact us and we will help.