Trust built into how municipal technology is delivered.
Municipal technology requires confidence in more than functionality. It requires clarity around where data resides, who controls it, how systems are protected, and how technology supports your organization's regulatory and governance requirements.
At PCL One, trust is built into how solutions are deployed, managed and supported.
Your Data. Your Environment. Your Control.
Keep municipal data where it belongs.
PCL One is designed to work within your organization's technology environment so that your municipality can retain control over its data.
Solutions can be deployed within your existing environment or, where required, within a dedicated environment configured for your organization.
Canadian Data Residency
Canadian data residency is available for organizations that require their data to remain within Canada.
Deployment Flexibility
We work with your IT team to determine an appropriate deployment model based on your infrastructure, security, operational and data-residency requirements.
Data Ownership
Your organization retains ownership and control of its data. Our deployment approach is designed to minimize unnecessary movement of municipal information outside your environment.
Designed around your municipality's requirements.
Canadian municipalities operate under different privacy, information-management and regulatory requirements depending on their province, jurisdiction and operating environment.
PCL One supports deployment and configuration approaches that can be aligned with the requirements applicable to your municipality rather than relying on a one-size-fits-all compliance model.
Specific regulatory and procurement requirements can be reviewed directly with your team.
Protection throughout the technology lifecycle.
PCL One maintains security practices designed to protect systems, information and service continuity.
Data Encryption
Data protection includes encryption controls designed to safeguard information where applicable throughout its lifecycle.
Independent Security Testing
Independent security testing forms part of our approach to identifying and addressing potential security risks.
Incident Response
Established incident-response processes support the identification, assessment and management of security events.
Business Continuity & Disaster Recovery
Business continuity and disaster-recovery practices are maintained to support operational resilience and recovery.
Our security program is undergoing independent assessment.
PCL One is progressing through external assurance against internationally recognized security standards.
SOC 2
Internal audit and readiness activities have been completed, with the external audit process currently underway.
ISO/IEC 27001
Internal audit activities have been completed, with the external audit process currently underway.
Cyber Insurance
PCL One maintains cyber insurance as part of its broader approach to organizational risk management.
Audit status is provided for transparency and does not represent completed certification or attestation until the applicable external process has been successfully completed.
Trust extends beyond infrastructure.
Responsible AI
PCL One is committed to the responsible use of artificial intelligence, with consideration given to appropriate governance, security, privacy, transparency and human oversight.
Vendor & Sub-processor Transparency
We recognize that municipalities need visibility into the third parties involved in their technology environment. Relevant vendor and sub-processor information can be provided as part of technical, privacy and procurement reviews.
Personnel Trust
Our security approach includes organizational and personnel practices intended to protect customer information and systems throughout the delivery and support lifecycle.
Technology should work for the communities it serves.
PCL One is committed to accessibility and to considering the needs of diverse users when designing, configuring and delivering technology for public-sector organizations.
Accessibility requirements specific to your municipality can be reviewed as part of solution evaluation and implementation.
Respecting distinct data-governance requirements.
We recognize Indigenous data sovereignty as an important and distinct data-governance consideration.
Where municipal services, partnerships or technology environments involve Indigenous data, PCL One can work with the relevant organizations to support requirements concerning data location, access, control and governance.
These requirements are considered in the context of the policies, governance principles and expectations established by the relevant Indigenous organization or community.
Need additional information?
Every municipality has its own security, privacy, technology, accessibility and procurement requirements. PCL One can provide additional security, architecture, deployment, assurance and governance information to authorized stakeholders as part of your organization's evaluation process.