Premium Security @ Rediffmail EnterprisePro |
Rediff.com Security is a powerful, fully integrated portfolio of services, managed devices and best practices - all designed to ensure the highest levels of security for customer data.
Our portfolio covers all three critical security areas: physical security; operational security; and system security. Physical security includes locking down and logging all physical access to servers at our data center. Operational security involves creating business processes that follow security best practices to limit access to confidential information and maintain tight security over time. System security involves locking down customer systems from the inside, starting with hardened operating systems and up-to-date patching. Rediff.com offers a full range of options to take system security to the next level.
Physical Security
- Data center access limited to Rediff.com data center technicians
- Biometric scanning for controlled data center access
- Security camera monitoring at all data center locations
- 24x7 onsite staff provides additional protection against unauthorized entry
- Unmarked facilities to help maintain low profile
- Physical security audited by an independent firm
System Security
- System installation using hardened, patched OS
- System patching configured by Rediff.com to provide ongoing protection from exploits
- Dedicated firewall and VPN services to help block unauthorized system access
- Data protection with Rediff's managed backup solutions
- Optional, dedicated intrusion detection devices to provide an additional layer of protection against unauthorized system access
- Risk assessment and security consultation by Rediff.com professional services teams
Operational Security - the Rediff.com Infrastructure
- All employees trained on documented information security and privacy procedures
- Access to confidential information restricted to authorized personnel only, according to documented processes
- Systems access logged and tracked for auditing purposes
- Secure document-destruction policies for all sensitive information
- Fully documented change-management procedures
- Independently audited business continuity plans in place for Rediff.com headquarters and support services
Operational Security - Customer's Application Environment
- Best practices used in the random generation of initial passwords
- All passwords encrypted during transmission and while in storage at Rediff.com Data Centers
- Secure media handling and destruction procedures for all customer data
- Support-ticket history maintained internally at Rediff.com, available for review.
- Help available from Rediff.com in configuring system logging to create a system audit trail
- Rediff.com Security Services can provide guidance in developing security processes for compliance programs