Security
The architecture was designed from the ground up with security in mind. From hardware, networking, and software perspectives down to the infrastructure where the equipment is placed, security of our customer's data is of the utmost importance. Through multiple layers of security and protected access,we leverage the built-in security features of products from business partners such as IBM, Novell, and Cisco.
Points include:
- infrastructure is hosted in a private and restricted area inside the computing facilities of a European banking institution. No exotic and unknown location of hardware. Customers can request a site inspection.
- IRIS-Ondit guarantees firewall inspection of all incoming and outgoing traffic.
- Numius adds reverse proxy handling as well as data encryption to further secure data traffic.
- User access control is based on industry standards. No anonymous accesses to the platform.
- Clients with dedicated environments have dedicated virtual networking segments.
- Compartmentalization of data traffic between internal servers. Servers only allowed to talk on appropriate ports and network segments, even for internal purposes.
- IBM Cognos and IBM DB2 Infosphere Warehouse built in security features.
- Security Auditing with BSP Metamanager.
- Encrypted password storage, integrateable with customer access management systems.
- Highly-qualified Numius technical team actively manages servers in NPS, working in conjunction with Numius' partners IBM, Novell, and IRIS-Ondit to provide a secure and stable environment , with inherent security rules preventing unauthorized data access even from Numius personnel.
- Customer data isolation.
- Automated management software monitors the access of data for security and auditing purposes. Suspicious queries, even from trusted or authorized personnel, are logged and alerts are sent. Sensitive data such as credit card numbers, social security numbers can be masked. Procedures for Sox compliancy possible.
