IRON FIST SECURITY
Comnicate delivers the following security provisions:
An On-Demand Application
- A firewall + load balancer protects application server nodes.
- Firewall protection blocks all ports but HTTP and HTTPS.
- Firewall protection conducts various intrusion detection tests such as port scan, syn flood, IP spoof, DOS, etc., and shuts down suspect sources.
- Access to private networks containing customer document and database data is limited to key operations staff.
- Database data is on a separate network not visible from outside the firewall.
- Database data is stored redundantly and nightly backups are kept in a separate, secure location.
- Document data is stored on a separate fiber network not visible from outside the firewall.
On-Demand Access
- The On-Demand server was overhauled and redesigned in 2007 to provide maximum security with increased efficiency.
- Since its creation, the On-Demand Server has had an uptime of 100%.
- All clients will have access to the application less the time required during the upgrade window.
Upgrade Management
- All new releases and upgrades are implemented between 8 pm – 12 am Australians EST on each Saturday.
- A new release of CPP will be available every quarter; these releases will include, but not be limited to
- New features
- Bug fixes
- Added API plug-ins
- Documentation updates
- Client requested feature additions
- Smaller releases will include pertinent features and fixes in the interim of the normal release schedule.
Support Access
- All technical support dealing with installation issues can be resolved by calling +61 (0) 3 9016 4307 or emailing support@comnicate.com.
- All documentation and user guides are located in the Online Support Center.
- Support requests; these are moderated by Client Services Executives and have a response time of 1-6 hours, Service Level Agreement pending on availability.
Training
- Training can be purchased in three different platforms: phone, on-site, and local training at Comnicate headquarters.
- Multimedia training tutorials for Comnicate are available via the Online Support Center.
Security
Comnicate has physical, system, and application security measures in place to prevent unauthorized access to the information it maintains and to safeguard the integrity of its data through authentication, encryption, monitoring, and backup. Access to said information requires authentication of valid login credentials. Transfer of data is done through secure browsers using encryption techniques. Additionally, all servers are monitored and maintained by full-time IT professionals. Additional security measures are integrated into
the design, implementation, and routine practices of the entire operating environment. These measures prevent corruption or loss of data and block unauthorized physical or network access to the systems and private information.
Physical Security
- Man traps
- Surveillance systems
- Motion detectors
- Security guards
- Individually locked racks and cages
- Card-key access
To ensure that each company’s information is completely secure, Comnicate houses its application and database servers in an off-site secure data center that offers five layers of physical access control which include man traps, surveillance systems, motion detectors, security guards, and locked racks and cages. Three layers of card-key access and a successful biometric scan are required to gain entrance to the data center. In addition, logs are kept of every individual’s entry and exit from the data center. Security guards are on duty 24 hours a day monitoring the building perimeter, the building interior, and the data center through a network of closed circuit security cameras. Alarm systems are also in place to alert security personnel of any unauthorized activity.
System Security
- Hardware Firewall
- Ongoing physically secure and redundant data backups in multiple geographical areas
- Software upgrades and patches
- Reliable primary and backup power
- Redundant Hardware
- Multiple fiber trunks
- RAID hard drives
- Clustered and standby servers
- Real-time activity logging
Multiple levels of security protect all electronic access to Comnicate data servers.
Disaster Recovery
Comnicate production data is incrementally backed up on a nightly basis, with a full backup once a week. Production data, including uploaded documents, is stored in a secure off-site facility. The datacenter runs all inbound power through its own power equipment to ensure that surges and harmful harmonics are removed before delivery to servers. In addition, dual power feeds are provided directly to servers, ensuring diversity and redundancy. All of the primary power systems are completely redundant, and are backed up by UPS and Generator systems. In the event of a power failure, power to the servers will not be interrupted. The datacenter is connected to the Internet by redundant Internet Service Providers.
|