Quantify has performed the CSA self-assessment questionnaire. The report is available to our clients and interested parties upon request.
Quantify participates in the Atlassian Cloud Security Program that covers privacy, security, reliability and support aspects of the organization.
Our services and data are hosted in Amazon Web Services (AWS) facilities (us-east-1) in the USA.
Our applications are built with disaster recovery in mind. All of our infrastructure and data are spread across 3 AWS availability zones and will continue to work should any one of those data centers fail.
All of our servers are within our own virtual private cloud (VPC) with network access control lists (ACLs) that prevent unauthorized requests getting to our internal network.
Customer data is backed up on a regular basis. Services are monitored for availability.
Access to customer data is limited to authorized employees who require it for their job.
We use 2-factor authentication (2FA) and strong password policies where possible to ensure access to cloud services are protected.
All data sent to or from Quantify is encrypted in transit and at rest use minimum 256-bit encryption.
Quantify uses third party security tools to continuously scan for vulnerabilities.
Quantify implements a protocol for handling security events which includes escalation procedures, rapid mitigation and post mortem.