Third Party Index

Snapshot 74129

Document
Security page
URL
https://swantide.com/security
Fetched
HTTP status
200
Content type
text/html; charset=utf-8
Fetch mode
static
Size
32308 bytes
SHA-256 (raw)
e2d2aeb857e45217912b2654a31571f6e1940fb305c11b9e9a3d14420d3543c4
SHA-256 (normalized text)
d1defb8d1388be03982158e4fbbfae661b71af0c3ae6491785fefaca7f1b4796

Normalized text

Scripts and page chrome removed; this is what change detection compares.

Legal
Security Overview
Swantide is designed with the most security-conscious IT and Security teams in mind, and security is deeply considered in every aspect of our product.
Overview
This paper provides a current overview of the state of Swantide's security. Our approach takes advantage of modern cloud computing practices while adhering to strict policies that ensure the security and integrity of the data we touch. Swantide is committed to working with security and IT teams, third-party auditors, and penetration testing firms to continually strengthen our investments across all aspects of our security.
Corporate Governance
Our commitment to the security and privacy of customers starts with information security policies that guide the behavior of our staff:
1Employees and contractors sign agreements that require them to preserve and protect the confidentiality of sensitive information they may access while doing their jobs.
2We conduct mandatory background checks for all employees.
3Employees are required to enable two-factor authentication in every internal and external service where two-factor authentication is made available.
4Employees receive privacy and security training at least annually.
5We have a well-documented Incident Response Plan, which requires the prompt disclosure of a breach to a customer's security organization and working with them for prompt remediation.
6Swantide is SOC 2 Type II certified.
Environmental Security
GCP is an industry-leading cloud service platform that provides Swantide with professional security staff, nondescript facilities, controlled access, video surveillance, intrusion detection, and other security features.
All data is separated from outside connections, and access is limited to select approved system administrators.
Swantide's databases, backups and all copies of application data are encrypted at rest (AES-256 or stronger).
Swantide stores immutable audit logs maintained by Google.
Access to and interaction with the deployment is logged and audited.
Software Security
Swantide is built with industry-tested technology and security practices.
Swantide uses a combination of methods to verify application correctness and security including mandatory peer review, suites of automated unit and integration tests, end-to-end diagnostics running on live systems.
All clients use TLS/SSL when communicating with deployments.
Swantide leverages single sign-on (SSO) and existing identity access management (IAM) and multi-factor authorization (MFA) providers for authentication.