AquaClusters Security
At AquaFold, we realize the importance of data stored in AquaClusters to you and your business. We constantly work on improving our infrastructure and policies to keep your data safe and protected from unauthorized access. Below we describe security measures that are currently in place.
Physical Security of the Hosting Systems
-
Data center access is limited to a small number of authorized specialists.
-
Data center facilities are protected with external security staff 24x7.
-
Data center facilities are designed and located to withstand severe weather and seismic conditions.
-
Biometric scanning for controlled data center access.
-
Security camera monitoring.
-
Physical security audited by an independent firm.
Operational Security
-
SAS 70 Type II Certified Data Center.
-
UPS backup system.
-
Backup generator.
-
Redundant cooling systems.
-
Systems access logged and tracked for auditing purposes.
-
Operational network is a closed system without any remote or VPN access.
Hardware and Data Backup
-
Every piece of hardware is immediately swappable in case of failure, with one backup copy constantly in place.
-
All data is stored on RAID 10 storage with hot spare disks and is replicated on at least 2 physically separate servers.
-
Automated backups take place every 24 hours.
Data Access and Transmission Security
-
All data for logged in users is transmitted over SSL (https) connection.
-
Public data that is available to non-logged in users can optionally be transmitted via unsecured (http) or SSL (https) connection.
-
User passwords are never stored in the system, an encrypted hash is stored instead.
-
Brute force attacks protection with rate limiting and CAPTCHA.
Service Availability
-
Automated DoS attacks detection and protection.
Credit Card Information Safety
-
Credit card information is stored in encrypted format.
-
The system does not provide user access to stored credit card information even for AquaFold employees.
-
Credit cards are processed automatically through Authorize.net. Communication with the processing center performed via SSL.
|