Key Specifications
  • Physical security measures include:
    • SSAE-18 Type II SOC II datacenter
    • Dedicated servers
    • Redundant power connections with standby generators
    • Multiple redundant network connections
    • Biometric scanning for controlled data access
    • 24/7 video monitoring
    • Physical security audited by an independent firm.
Key Specifications
  • Custom-hardened Unix kernels
  • Managed virtual private cloud
  • Managed continuous firewall monitoring
  • Policies and Procedures:
    • Employees prohibited from accessing private data
    • Onit claims no ownership of your data
    • 24/7 monitoring and escalation
    • All users must be verified by email.
Key Specifications
  • System installation using hardened, patched OS:
    • System patching configured to provide ongoing protection from exploits.
    • Dedicated firewall and VPN services to help block unauthorized system access.
    • Data protection with managed backup solutions.
    • Distributed Denial of Service (DDoS) mitigation services.
Key Specifications
  • Onit audits to:

    • SSAE-18 SOC 2 Type 2
    • SOC 1 Type 2
    • HIPAA standards, verified by an independent auditing firm.
  • Encryption for all administrative traffic (HTTPS, SFTP, SSH).

  • Encryption for all customer traffic (HTTPS).

  • Datacenter employees trained on documented procedures.

  • Systems access logged and tracked for auditing purposes.

  • Secure document-destruction policies for all sensitive information.

  • Fully documented change-management procedures.

  • Independently audited disaster recovery and business continuity plans.