Third Party Index

Snapshot 21613

Document
Security page
URL
https://civicroundtable.com/security
Fetched
HTTP status
200
Content type
text/html; charset=utf-8
Fetch mode
static
Size
56652 bytes
SHA-256 (raw)
7062df31af6a629ae4facf7838be6654dc0122f3eb2810a9bf3e5592e9bdc2aa
SHA-256 (normalized text)
566a20d522589cf01d5b98bb029343222bb7ab3ec17726b1843f305dadfa2490

Normalized text

Scripts and page chrome removed; this is what change detection compares.

Security
Security at Civic Roundtable
Safeguarding your data is a top concern at Civic Roundtable. We are committed to protecting the valuable conversations, resources, and connections facilitated on our platform.
Customer security comes first
Customers trust Civic Roundtable to power their critical work, and we’re committed to building an application they can trust. Our product offering is a managed, tested, and externally audited platform with robust access controls. As part of our continuous investment in protecting your data, we are committed to:
Hiring a world class technology team to oversee platform security
Keeping up to date with security industry standards and best practices
Deploying security technology to safeguard against security threats
Incorporating automated and manual checks for data security as part of our development lifecycle
Keep your data safe
Compliance: Civic Roundtable is hosted on AWS GovCloud, which has a FedRAMP High ATO, uses FIPS 140-2 compliant service endpoints, meets NIST 800-171, and ensures all data centers are maintained by US citizens. Civic Roundtable maintains SOC 2 Type II compliance and our report is available upon request in our Trust Center.
Human Resource Security: All Civic Roundtable employees and contractors agree to terms and conditions of employment upon joining, undergo criminal background checks, require annual security awareness training, and follow our Acceptable Use Policy for company resources. Upon termination, access to all systems is revoked and physical assets are returned.
Data Protection: All data is encrypted at-rest using AES-256 GCM encryption with root keys stored in an HSM controlled by Roundtable. All data in-transit is encrypted using modern, secure SSL/TLS settings and HTTP headers. We use unique accounts to access all systems, and log user activity for internal auditing. Production networks are closed by default and protected by firewalls, with only the minimal necessary ports open between services.
Disaster Recovery: We perform annual disaster recovery exercises to ensure preparedness. We backup all customer data daily, save backups for one year, and copy backups to multiple geographic regions.
Report an issue
If you’ve identified a potential security flaw in our application, please let us know at [email protected].
Ready to make an impact?
Book a demo