Here are just a few things we’ve implemented on the system
Native support for multi-factor authentication, enterprise SSO and RBAC.
Implemented proper internal Firewall protection, intrusion prevention and detection systems, and DLP solutions.
Maintains detailed information and diagrams about our network architecture.
Industry standard encryption in transit and at rest like TLS version 1.2, AES, DES, RSA, Blowfish, etc.
Comprehensive incident response, SentinelOne for threat management and SIEM infrastructure monitored 24x7x365.
Continuous security testing in development lifecycle (both software components and infrastructure code)
Continuous security testing in development lifecycle (both software components and infrastructure code)
Robust performance and availability infrastructure monitored 24x7x365.
Regular penetration testing and vulnerability scanning by the best in the business.
Utilizing Microsoft Azure for cloud hosting service provider.
In order to protect the data that is entrusted to us, Fortrex utilizes a defense-in-depth approach to implement layers of security controls throughout our organization.
Access to Fortrex’s infrastructure is strictly controlled and follows the logical and physical access control policies and procedures.
System development life cycle (SDLC) process is a formalized, process-driven approach intended to maintain the stability of production systems.
Maintain proper corporate security controls, including HR security functions, a security awareness training program, secure email protection, risk management, incident response, vendor management, etc.