Software. Security. Intelligence.

What we do

Build and protect.

Software and security work together at Intelisav. We design and build business systems with security considered from architecture through operation.

Software Engineering

Software that works in the real world.

We design and develop business applications, SaaS platforms, APIs and integrated systems for organizations with real operational requirements.

  • Business applications
  • SaaS platforms
  • APIs & integrations
  • Systems architecture
  • Custom business software
Cybersecurity & Data Protection

Security considered from the start.

We help organizations identify and address security risks across applications and infrastructure, with appropriate controls for the data those systems handle.

  • Application security
  • Secure code review
  • Security testing
  • Penetration testing
  • Data protection
Our products

Software we build and operate.

Simba Retail and Med3 are platforms we build, operate and secure ourselves. They give us a practical environment in which to apply the same engineering and security principles we bring to other software projects.

Simba Retail · Retail & Commerce

Sales, stock, customers and payments in one system.

Retail management software for shops, supermarkets, wholesalers and multi-branch operators.

  • Offline-capable POS
  • Inventory & multi-branch stock
  • Customer and credit management
  • M-Pesa and other payment workflows
Explore Simba Retail
Med3 · Healthcare

One care platform. Clearer operations.

Healthcare operations software connecting patient records, appointments, billing and clinical inventory in one workspace.

  • Patient records
  • Appointments & care workflows
  • Billing & payments
  • Clinical inventory
Explore Med3
InteliVis, the assistive navigation research initiative, shown in development

InteliVis — in development.

Innovation

The work we’re still exploring.

Alongside the software and security work we deliver, we explore applied technology where it can address practical problems.

One current initiative is InteliVis, an assistive-technology project exploring how intelligent systems can help people with visual impairments navigate their surroundings.

InteliVis is in development and is not currently offered as a commercial product.

Why Intelisav

Security is engineered in, not added on.

We bring software engineering and cybersecurity together throughout the software lifecycle — from architecture and development to testing, deployment and operation.

01

Threats are considered early.

Architecture, threat modelling, code review, dependency and secret scanning, testing and hardening form part of the development process.

02

Technology has to work in context.

Our products and engineering work account for practical requirements such as mobile money, multi-branch operations, payment workflows and operational data.

03

We publish where there is something useful to contribute.

Our security research includes published work on IoT attack vectors, with a DOI for independent reference.

Read the research
04

We use what we build.

Simba Retail and Med3 are software platforms we build and operate ourselves, giving us direct experience with the systems and workflows we develop.

See our products
Our approach

Discover. Design. Build. Harden. Operate.

A secure development lifecycle from the first conversation through production support.

01

Discover

Understand the organization, users, operations, data and obligations before defining the solution.

02

Design

Define architecture, data flows, integrations and access controls, with security considered alongside functionality.

03

Build

Develop against the agreed design with engineering, testing and security review progressing together.

04

Harden

Test the system, review dependencies and secrets, address identified weaknesses and prepare the release for operation.

05

Operate

Support, monitor and improve the system as real workloads, users and requirements evolve.

Insights

What we’ve written down.

Technical thinking, security research and practical lessons from the systems we build and secure.

Application Security

OWASP Top 10 for Business Applications

What the major application-security risks mean when the application is a point-of-sale system or a patient record rather than a simple login form.

Read article
Payments

Building Secure Payment Integrations

Why receiving a payment callback is not, by itself, enough to establish that a transaction has been completed.

Read article
Research

IoT Attack Vector Research

Our published research examining attack paths available to an unmonitored connected device.

Read research
Start a Project

Building something new or securing something existing?

Tell us what you’re building, improving or protecting. We’ll help scope the right next step.