|
|||
Data SecurityThe Smart Trading Cloud Repository is a solution that allows you to store your files in the cloud reliably and securely. Protecting the confidentiality, integrity, and availability of our customers’ user accounts and data is of the utmost importance to Edifecs, as well as maintaining customer trust and confidence. The Smart Trading Cloud Repository uses the highly secure Amazon Web Services (AWS) infrastructure since AWS’s data centers are state of the art, utilize innovative architectural and engineering approaches, and are housed in nondescript facilities that ensures reliability and security. Infrastructure securityThe Smart Trading Cloud Repository uses the Amazon Simple Storage Service (Amazon S3) that redundantly stores your objects on multiple devices across multiple facilities in an Amazon S3 Region. The service sustains concurrent device failures since it quickly detects and repairs any lost redundancy. It is designed to deliver high durability and scale past trillions of objects worldwide. Amazon S3 stores data as objects within buckets. Only bucket and object owners have access to the Amazon S3 resources they create (a bucket/object owner is the AWS Account owner, not the user who created the bucket/object). Users do not access Amazon S3 buckets directly, and the Smart Trading Cloud Repository uses a high-level of User Identity and Access Security to internally access S3 buckets. Users are shielded from that, and no user has direct access to the buckets. The Smart Trading Cloud Repository can offer data transfer over SSL and automatic encryption of your uploaded data. Your data is fully secure since the Smart Trading Cloud Repository supports multiple access control mechanisms, encryption for both secure transit and secure storage at rest. The Smart Trading Cloud Repository protects your data from logical, physical, and infrastructure failures and application errors. It also guards against data loss and unintended user actions. The Smart Trading Cloud Repository also uses Amazon Elastic Compute Cloud (Amazon EC2) - a web service that provides secure and resizable computation capacity in the cloud and works in conjunction with a virtual private cloud to provide security and robust networking functionality for your resources. EC2 supports multiple methods for encrypting data at rest. For additional security measures, Edifecs can offer dedicated EC2 instances that run in a virtual private cloud on hardware dedicated only to you. These instances are physically isolated at the host hardware level from non-dedicated and instances that belong to other users. HIPAA complianceThe Smart Trading Cloud Repository is eligible to store, process, and transmit protected health information. So, organizations that are a subject to the security and privacy regulations of the Health Insurance Portability and Accountability Act (HIPAA) can leverage the secure Smart Trading Cloud Repository to store protected health information. The Smart Trading Cloud Repository meets the HIPAA, HITECH, and HITRUST CSF requirements related to the use and disclosure of protected health information, appropriate safeguards, individual rights, and administrative responsibilities. For additional security of confidential governmental data, the Smart Trading Cloud Repository can offer AWS GovCloud (US) that is an isolated AWS Region that allows moving workloads into the cloud by helping them meet certain regulatory and compliance requirements. It can also allow you to comply with U.S. International Traffic in Arms Regulations (ITAR) regulations and the Federal Risk and Authorization Management Program (FedRAMP) requirements and to follow a standardized approach to security assessment, authorization, and continuous monitoring for cloud products and services. |