Home · Standards

Same standards.
Both disciplines.

ENGINEERINGISO 9001-aligned QA · HSE · Toolbox meetings

SOFTWAREOWASP · AES-256 · NDPA · Penetration testing

JUMP TO QA/QC · HSE · Cybersecurity

QUALITY ASSURANCE

Procedures, not
promises.

Whether it's a road section or a software release — documented QA plan, inspections at every stage, records for every decision, independent review. ISO 9001-aligned and independently assessed.

QA/01

Project quality plan.

Dedicated QA plan per project — engineering OR software. Defines procedures, criteria, resources and the standard the deliverable must meet.

QA/02

Testing & inspection.

Engineering: inspections at every construction stage. Software: unit, integration and end-to-end testing in CI/CD. Nothing ships without passing.

QA/03

Full traceability.

Engineering: material certificates, inspection reports, test records. Software: git history, code review records, deployment logs. Complete audit trail from start to handover.

QA/04

Continuous improvement.

Periodic review by management. Post-project retrospectives. Lessons learned fed back into processes. Same discipline whether the output is concrete or code.

HEALTH, SAFETY & ENVIRONMENT

Safety before
schedule.

Daily toolbox meetings. Mandatory PPE. Certified operators only on heavy plant. Underground services located before excavation. Formal accident investigation with root-cause analysis. We will never trade a worker's safety for a deadline.

Pre-mobilisation

BEFORE FIRST SHOVEL
Site visit: Engineer, Foreman & Safety OfficerHazard identificationFirst-aid & emergency equipment posted

Daily toolbox meetings

EVERY MORNING
Day's work plan with hazardsPrecautions confirmedSafety issues documented

Accident investigation

ROOT CAUSE
Every incident reported immediatelyRoot cause, not symptomsLessons into next toolbox meeting
CYBERSECURITY & DATA PROTECTION

Your data. Our
responsibility.

AES-256 encryption at rest and in transit. NDPA compliance. Role-based access control. Immutable audit trails. Annual penetration testing. Incident response plan tested annually. Security is the foundation, not a feature.

SEC/01

Encryption everywhere.

AES-256 at rest. TLS 1.3 in transit. Cryptographic key management with rotation. No exceptions.

SEC/02

Access control.

RBAC on every system. MFA for admin access. Session timeout. Every access logged and auditable.

SEC/03

NDPA compliance.

Data processing agreements. Privacy impact assessments. Data minimisation. Retention policies. Breach notification within 72 hours.

SEC/04

Continuous monitoring.

Real-time system monitoring. Automated alerting. Annual pen test by certified third party. Vulnerability scanning. Incident response procedures.

Standards matter.
So does the team
that keeps them.

LET'S BUILD SOMETHING
+234 813 110 1943info@eniway.ng
Lagos, Nigeria
Start a project