VenturusEAM
Book a demo
esc
↑↓ to move↵ to openBrowse the full catalog →

Security that keeps each person to their own companies and sites

VenturusEAM signs people in with hashed passwords and optional two-factor codes, then shows each person only the companies, sites and pages their role allows. Key actions are logged with who did what and when, and the product runs as SaaS on Microsoft Azure, with an on-premises option.

23 capabilities on this page’s part of the platform

Administration / Access review

Access review

All companies · 48 active users

Two-factor required for Admin
Active users
48
Two-factor enrolled
46
Overrides
3
Companies
2
UserRoleCompanyTwo-factorOverride
M. ChenAdminPlant 1EnrolledNone
L. NguyenAccountantAll companiesEnrolledNone
R. OrtizViewerPlant 2EnrolledDownload files · by M. Chen
J. RuizViewerPlant 1EnrolledNone
S. KimViewerPlant 2Not enrolledNone

Export for your auditors

  • Every account with its role, company and permission switches, including who overrode a switch and when.
Download CSV

Sign-in that holds up

Passwords are hashed with Argon2id, repeated failed sign-ins are slowed down, and an administrator can require an authenticator code for any role. Every page carries strict browser security headers, and uploaded files are served only to people who are signed in.

  • Secure sign-in

    Signs people in with strongly hashed passwords and a session that is re-checked against their account on every request.

  • Two-factor sign-in

    Adds an authenticator-app code to sign-in, with one-time recovery codes, and lets an administrator require it by role.

  • Sign-in attempt throttling

    Slows down repeated failed sign-ins for the same user from the same address.

  • Browser security headers

    Sends strict browser security headers on every page to block common web attacks.

  • Uploaded files for signed-in users only

    Serves uploaded files only to people who are signed in.

  • Public security and data ownership page

    Answers a buyer's security questions on one page anyone can read without signing in.

Each person sees what their role allows

Administrators add people, set their role and company and switch individual permissions on or off. Pages are protected on the server, menus and search hide what a person cannot open, and an access review report lists every account for your periodic check.

  • User administration

    Lets an administrator add people, set their role and company, and manage their access switches in one place.

  • Access review report

    Lists every account with its role, company, permission switches and attestation, for periodic access reviews, with a CSV download.

  • Menus that match your permissions

    Hides menu entries, shortcuts and search results for pages a person is not allowed to open.

  • Role-based workspace views

    Lets each person pick the job they are doing so the menu shows only what that role uses.

  • Controlled-data access ledger

    Records every open of export-controlled files in a tamper-evident log, with alerts on unusual volume.

Companies and sites kept apart

Run several companies, including parents and subsidiaries, in one system. Each person sees only the companies they are assigned to, and every screen filters its own queries by those companies.

  • Multiple companies under one roof

    Runs several companies, including parent and subsidiary companies, in one system with their own currency and records.

  • Company and site selector

    Lets a person who works across companies or plants narrow the whole app to one company and one site.

  • Company settings

    Holds each company's legal details, tax numbers, currency, fiscal year start, language, time zone and logo.

  • Turn modules on or off

    Lets you switch off areas you do not use, such as purchasing or payables, so people only see what applies.

  • Sites

    Records each plant or facility with its address, time zone, manager and size.

  • Locations down to the bin

    Breaks each site into nested locations, down to aisle, rack, shelf and bin.

  • Departments and cost centers

    Sets up departments and a cost center hierarchy so assets and work are charged to the right place.

  • Exchange rates

    Keeps dated exchange rates between currencies for companies that buy or report in more than one.

A record of who changed what

The audit log records journals, period close, asset imports, approvals and bulk changes with the user and the time, searchable by record type and action. Your asset register, journals and schedules export to Excel, CSV or PDF whenever an auditor asks.

  • Audit log

    Records who changed what and when for key actions, searchable by record type, action and user.

  • Exports to Excel, CSV and PDF

    Downloads your asset register, journals, maintenance, capital projects and depreciation schedules as files.

  • Health checks for hosting

    Reports whether the app is up and ready, so the host can restart it or hold back a bad release.

  • System settings

    Holds the settings that apply across all companies, such as which roles must use two-factor sign-in.

VenturusAI under the same rules

VenturusAI only sees data from the companies and sites the person asking is assigned to. Every AI-assisted action is logged under that person, with the words used and the confidence, so the audit trail always shows a human name.

  • Audit trail that separates AI help from human actionVenturusAI

    Every AI-assisted action is logged under the person who asked for it, with the words used, the tool called, the model version and the confidence.

  • AI only sees your company's dataVenturusAI

    The assistant's data summary is built only from the companies and sites the person is assigned to, and is refused outright when that assignment is incomplete.

Related

Common questions

Where is VenturusEAM hosted?

VenturusEAM is delivered as SaaS on Microsoft Azure, with an on-premises option for companies that want it in their own data center. Health checks let the host restart the app or roll back a release automatically.

Can we require two-factor sign-in?

Yes. An administrator chooses which roles must use an authenticator code, and the requirement applies on each person’s next request. People enroll with a QR code and get one-time recovery codes.

Can a company administrator see another company’s data?

No. A company administrator manages accounts in their own company only, and every screen filters by the companies a person is assigned to. Only a global administrator sees every company.

Does our data train any AI model?

No. VenturusAI reads a summary of your own company’s data to answer a question, and no customer data is used to train any model.

The plant never stops. Neither does the record.

Bring an asset list and a month of work orders. We will load them and walk through your own plant in VenturusEAM, from the purchase order to the depreciation run.