Security, trust & open

A system of record your security team and your auditors can trust.

OpenCAMA IQ is built so the people who scrutinize you most — your CISO, your county auditor, an appeals board, a public-records request — find exactly what they expect: a complete, defensible trail and a platform that holds your data, never holds it hostage.

Fiduciary auditability

Every change is on the record — automatically.

Assessment is a fiduciary act. The platform treats the audit trail as a first-class part of the data model, not an afterthought you have to remember to enable.

  • Automatic field-level logging — every change to every field is captured with who, what, and when. There is no "untracked" edit path.
  • Immutable certified snapshots — when a value is certified, the system writes a frozen snapshot that becomes the legal record of what was certified and when.
  • Full exemption history — grants, denials, transfers, and recalculations retain their complete lineage for every parcel.

Built for the moments that matter: defending an appeal, answering a FOIL / public-records request, or reconstructing a contested assessment line by line.

The data foundation: every entity stored as a typed document, giving strongly-typed access, plain SQL and search over it, and an automatic changelog written on every save recording who changed what, when — no untracked edit path.
Security architecture

Defense in depth — enforced at the data layer, not just the UI.

Controls are wired into how data is stored and served, so a permission can't be bypassed by hitting a different screen or endpoint.

🔑

Azure AD single sign-on

Authenticate through your existing Azure Active Directory — MFA, conditional access, and offboarding flow straight from your identity provider. No separate password store to manage.

🛡️

Role & field-level permissions

Granular roles plus field-level rules are enforced at the data layer, so what a user can see and change is consistent across every dashboard, search, and export.

🔐

Secrets in a cloud vault

Connection strings, API keys, and storage credentials live in a managed secrets vault — never in source, never in config files checked into a repo.

🔒

HTTPS everywhere

All traffic is encrypted in transit. No mixed-content paths, no plaintext fallbacks.

🧱

Database row-level security

PostgreSQL row-level security scopes records to the right jurisdiction and role at the database itself — the last line of defense if anything above it is misconfigured.

🌐

No database on the internet

The public portal holds no database credentials. It talks only to a gateway — so the citizen-facing site has nothing for an attacker to steal.

Compliance status

Where we actually stand — attained, in progress, and planned.

The certifications your procurement, legal, and accessibility reviewers ask for by name, each labelled with its real status rather than its ambition. Nothing here is claimed before it is earned.

Implemented in product
📐

IAAO ratio-study standard

COD, PRD, and PRB are computed directly in the valuation statistics, so every model run and every certified roll arrives with its ratio study attached.

By design · self-assessed
🏛️

NIST 800-53 alignment

Secrets management, managed identity, audit-by-default, and environment isolation are built to the NIST 800-53 control framework. This alignment is self-assessed today, not yet attested by a third party.

In progress

WCAG 2.1 AA & VPAT

Conformance verification is underway for the public portal and every staff application, with automated accessibility checks gating the build pipeline. A VPAT/ACR on the ITI template is in preparation.

Planned
📋

SOC 2 Type II

The baseline most county IT shops require. The audit window is designed to open alongside a live pilot, so the attestation matures with a real deployment rather than ahead of one.

Planned
🔏

GovRAMP / StateRAMP

Authorization for state and local government deployment, sequenced after SOC 2 Type II and built on the same NIST 800-53 control alignment already in the architecture.

Attained
🎓

Team certifications

Individual professional certifications across the engineering team, principally on the Microsoft platform. These were earned individually rather than through a corporate credentialing program.

We would rather tell you this plainly than let a procurement review discover it. A certification earned ahead of need attests to paperwork; one earned alongside a live government deployment attests to practice. If your jurisdiction weights formal certification differently, the SOC 2 timeline can be accelerated.

Open & no lock-in

Making your exit easy is a feature, not a threat.

Proprietary incumbents make leaving expensive on purpose. We do the opposite — and we put it in the contract.

📦

Open data & open APIs

The platform is open. No black boxes deciding your values, no opaque data formats you can't read without the vendor — your data and every integration surface are documented and reachable.

⬇️

Documented data exports

Your full dataset — parcels, values, history, exemptions — exports in documented, standard formats whenever you want it.

🚪

A clean contractual exit

A defined, low-friction off-ramp written into the agreement. Leaving is your right, not a renegotiation.

The four pillars of the trust architecture: automatic field-level audit, least privilege enforced down to the field, governed AI that never decides a value, and an open, portable platform with documented schemas and a contractual exit.
Data residency & hosting

US-region cloud hosting. Your data stays yours.

🇺🇸

US-region hosting

Deployed in US regions of either major cloud, so residency and jurisdiction questions have a straight answer for your county counsel.

☁️

Enterprise cloud foundation

Runs on either major cloud, inheriting the provider's compliance, redundancy, and security posture — not a self-hosted stack you have to vouch for alone.

🤝

Yours, always

You own the data and the right to take it with you. Hosting is a service we provide, not leverage we hold.

Explore the citizen-facing side on the public portal page, or see how it all fits together on the platform overview.

See the audit trail and the security model for yourself.

Bring your CISO and your auditor. We'll walk through field-level logging, certified snapshots, the data-layer permission model, and the exit terms — on real screens.

Request a demo