Business continuity and disaster recovery #
- Disaster Recovery Procedure
- Backup Strategy
- Restore Strategy
Information security #
- Data privacy
- Confidentiality
- Disclosure of information
- Data security
- Import and export of data
- Access to and extraction of data
- Data ownerships
- Data protection
- Data destruction
- Security incidents
- Data breach response
- General security policies
- Production security policies
- Development policies
- Encryption in transit
End-to-end encryption #
- For encryption at rest, YouTestMe uses Microsoft Azure Disk Storage Server-Side Encryption (256-bit AES).
- For encryption in transmission (in transit), YouTestMe warrants that all client’s data will be encrypted using Transport Layer Security (TLS) 1.2 at an encryption level equivalent to or stronger than 256-bit AES encryption.
- For increased security, YouTestMe also uses PostgreSQL native support for using SSL connections to encrypt client/server communications.
Deployment appliance hardening #
Cloud security #
Operational security #
Operational security focuses on securing people and processes that are critical to the organization’s operations. YouTestMe is compliant with ISO/IEC 27001 international standard to manage information security and has ISO 27001:2013 certificate.