Our concern with security is an ongoing activity in our day-to-day, as we are always looking to increase our security levels, and it was in pursuit of this excellence that we are using Amazon Web Service’s cloud services. Within our control and monitoring process, two layers of work were established, in these layers different teams of collaborators work in a way that neither can access the other’s layer, thus increasing our level of security and privacy.
Infrastructure Layer
World-class data centers are highly secure from AWS, utilizing state-of-the-art electronic surveillance and multi-factor access control systems. Datacenters are secured 24 hours a day, 7 days a week by trained security guards and access is strictly authorized on the basis of the least privilege possible. Environmental systems are designed to lessen the impact of disruptions to operations. And multiple Availability Zones and Regions allow you to remain resilient in the face of most failure modes, including natural disasters or system failures. The entire infrastructure is monitored and controlled by trained professionals from the BIMachine platform. We have an exclusive team to ensure that all services are always with the highest level of security.
Camada de Software
With the security of our infrastructure guaranteed by AWS and our team of analysts, there are other services that we use to also ensure a secure environment at the software level, within these services are:
- Secure Access: Client access points, also called API endpoints, allow access via secure HTTP (HTTPS) so you can establish secure communication sessions with your AWS services using SSL.
- Built-in firewalls: You can control the level of accessibility to your instances by configuring built-in firewall rules – from fully public to completely private, or something in between. And when your instances reside within a Virtual Private Cloud (VPC) subnet, you can control both outbound and inbound.
- User authentication: Any and all access to BIMachine regardless of the platform (WEB, Mobile APP, API, SmartTV) is done through login access and a secure SSL communication channel.
- Database Security: Your data is our main concern, both in terms of information access security and the security of its integrity. Our database infrastructure is completely isolated from external access, only allowing servers that are inside our private cloud, and have a compatible access key, to perform some operation.