Key Specifications
- Physical security measures include:
- SSAE-18 Type II SOC II datacenter
- Dedicated servers
- Redundant power connections with standby generators
- Multiple redundant network connections
- Biometric scanning for controlled data access
- 24/7 video monitoring
- Physical security audited by an independent firm.
Key Specifications
- Custom-hardened Unix kernels
- Managed virtual private cloud
- Managed continuous firewall monitoring
- Policies and Procedures:
- Employees prohibited from accessing private data
- Onit claims no ownership of your data
- 24/7 monitoring and escalation
- All users must be verified by email.
Key Specifications
- System installation using hardened, patched OS:
- System patching configured to provide ongoing protection from exploits.
- Dedicated firewall and VPN services to help block unauthorized system access.
- Data protection with managed backup solutions.
- Distributed Denial of Service (DDoS) mitigation services.
Key Specifications
Onit audits to:
- SSAE-18 SOC 2 Type 2
- SOC 1 Type 2
- HIPAA standards, verified by an independent auditing firm.
Encryption for all administrative traffic (HTTPS, SFTP, SSH).
Encryption for all customer traffic (HTTPS).
Datacenter employees trained on documented procedures.
Systems access logged and tracked for auditing purposes.
Secure document-destruction policies for all sensitive information.
Fully documented change-management procedures.
Independently audited disaster recovery and business continuity plans.