What is Pixelsilk ’s position on Information Security?
Pixelsilk takes your Information Security very seriously
Pixelsilk takes your Information Security very seriously. The facets of Confidentiality, Integrity, and Availability of data are assured using a wide array of controls.
Data confidentiality is maintained by adopting relevant sections of ISO/IEC published standards, NIST special publications, and PCI (Payment Card Industry) standards. Operational controls define proper use and access to information based on “least privilege” and “need to know” principles. Technical controls force identification, authentication, strong passwords, aggressive firewall policies, and make regular use of scanning tools. Cryptographic technologies are implemented where appropriate.
Data integrity means information cannot be accidentally, or maliciously, altered or destroyed. To this end, nightly back-ups of customer data have a two-week history. Verbose logging is enabled in order to pinpoint data update activity. Host Intrusion Detection Systems (HIDS) monitor files for abnormal changes in checksum or size. The Pixelsilk UI has safeguards for accidental data deletion.
Data availability is critically important for a website that should be accessible 24 hours a day, 7 days per week.
Pixelsilk strives for 99.9% minimum availability and makes every effort to maximize uptime. If a high-risk maintenance window must be scheduled, it is performed after-hours and with generous notice provided. Pro-active measures to reduce outages have been taking including redundant servers, redundant components within servers, redundant network links, and long-term backup power. In the event of unplanned outage, affected users will be provided a comprehensive debriefing.
Back to list...