Data Security Standards
Security Governance
These policies are communicated to all employees and contractors as part of the onboarding proces...
These policies are communicated to all employees and contractors as part of the onboarding proces...
Software Development Lifecycle
We follow OWASP Secure Coding Practices and use Static Application Security Testing (SAST) and Dy...
We follow OWASP Secure Coding Practices and use Static Application Security Testing (SAST) and Dy...
Data Protection
RedmineUP can store a wide range of business-related data as defined by our customers. This may i...
RedmineUP can store a wide range of business-related data as defined by our customers. This may i...
Business Continuity and Disaster Recovery
We maintain a dedicated backup service and use AWS infrastructure for high availability. Backups ...
We maintain a dedicated backup service and use AWS infrastructure for high availability. Backups ...
Infrastructure Security
We use Amazon Web Services (AWS) infrastructure in Ireland (Eur...
We use Amazon Web Services (AWS) infrastructure in Ireland (Eur...
Incident Management
We maintain a structured Incident Response Plan (IRP) with a designated Security Officer responsi...
We maintain a structured Incident Response Plan (IRP) with a designated Security Officer responsi...
Access Control and Authentication
All users must authenticate before accessing any system. We support:
All users must authenticate before accessing any system. We support:
Third-Party Risk Management
We use third-party vendors and hosting partners (e.g., Amazon Web Services) to provide the hardwa...
We use third-party vendors and hosting partners (e.g., Amazon Web Services) to provide the hardwa...
Privacy
We are committed to meeting the highest level of personal data privacy and support you and your o...
We are committed to meeting the highest level of personal data privacy and support you and your o...
Auditing and Monitoring
Access to specific customer data fields is logged at the application level. Our systems log all m...
Access to specific customer data fields is logged at the application level. Our systems log all m...