Snapshot 20999
Normalized text
Scripts and page chrome removed; this is what change detection compares.
Security Trust Center The policies that govern security at SemantiqWall. They describe what exists today; anything not yet in place is shown as a commitment, with an owner and a target date. Information Security Program How security is governed at SemantiqWall - roles, risk management, policy exceptions, annual review and the register of laws and commitments we follow. Version 1.0 · Approved on 09/28/2026 Access Control and Identity Who can access what - mandatory MFA, roles and least privilege, account creation and removal, access reviews, server access by SSH keys and handling of secrets. Version 1.0 · Approved on 09/28/2026 Cryptography and Key Management What is encrypted in transit and at rest today, which algorithms are used, where keys live, and how keys are rotated, revoked and destroyed - including what is not encrypted yet. Version 1.0 · Approved on 09/28/2026 Secure Development and Change Management How code and configuration change safely - the secure development lifecycle, mandatory tests, review, dependency updates, deployment, rollback and emergency changes. Version 1.0 · Approved on 09/28/2026 Logging and Monitoring What SemantiqWall logs, how the audit trail is protected, how long logs are kept, who can read them, how time is synchronized and which alerts are still missing. Version 1.0 · Approved on 09/28/2026 Incident Response How SemantiqWall detects, triages, contains and recovers from security incidents, when and how customers, the ANPD and other authorities are notified, and how evidence is preserved. Version 1.0 · Approved on 09/28/2026 Business Continuity and Backup What SemantiqWall can recover from today, honest recovery targets, how backups are taken and tested (on the server and encrypted off-site), and the disaster recovery steps. Version 1.0 · Approved on 09/28/2026 Vulnerability Management How SemantiqWall finds, rates and fixes vulnerabilities - the public disclosure program, patching deadlines, CVSS and CISA KEV prioritization, dependency scanning and advisories. Version 1.0 · Approved on 09/28/2026 Data Protection and Privacy What data SemantiqWall holds, how it is classified, where it is stored, how long it is kept, how it is deleted, and how data subject and law enforcement requests are handled. Version 1.0 · Approved on 09/28/2026 Supplier and Subprocessor Management The suppliers SemantiqWall depends on, what data each one receives, who is responsible for what, and how suppliers are chosen and reviewed. Version 1.0 · Approved on 09/28/2026 Acceptable Use, Endpoints and Personnel Rules for using company systems and devices, the security settings required on every device that reaches production or customer data, and the personnel controls that start with the first hire. Version 1.0 · Approved on 09/28/2026 Shared Responsibility Model What SemantiqWall secures and what each customer must do - users and MFA, API keys, policies, agent integration and approvals. Version 1.0 · Approved on 09/28/2026 Related documents Privacy policy Terms of use Responsible disclosure policy Secure by Design Questions about security or privacy: [email protected]