What We Run

People & HR Systems

Access to internal systems should follow a role, not accumulate against a person over months of ad-hoc requests nobody remembers granting. That single principle — permissions tied to what the job requires, not to who asked nicely or how long someone has been around — is the foundation for both HR systems and the security posture behind them.

The systems here are built the same way we run our own employee access: role-based from day one, so an audit of who can see what is a query, not an investigation.

About cookies on this site

Essential cookies are always on. Analytics only with your consent. No advertising cookies, and we never sell personal information. See or our privacy statement.

What each type does

This site sets a small number of cookies it cannot work without — keeping you signed in, and checking that form submissions are not automated. Those are always on.

With your consent we also measure which pages get used, so we can improve them. We use cookieless analytics that does not follow you to other sites.

EBM runs no advertising cookies and does not sell personal information. See for the full list, or our privacy statement.