Security
Security of our customers data is a priority at RefAssured. This page lists some of the important measures in place to protect and safeguard our customers information.
Protect Data & Privacy
Above all, we are dedicated to the security and consistency of the platform. Using cloud solutions, we use the latest and greatest in hardware, software, and industry best practices. The application is hosted in AWS, with multiple layers of network security, as well as top of the line encryption. Additionally, we enforce communication over HTTPS and restrict all traffic to intended devices, ensuring that your data is treated with the utmost care and concern.
Infrastructure Layer Security
Our servers reside behind a sophisticated firewall that selectively grants access to network resources. We perform routine external penetration testing for system security and validation. Lastly, multiple internet backbone connections provide routing redundancy and high-performance connectivity.
Application Layer Security
AWS Cognito secures your credentials, while our .NET 6 Authentication/roles guarantees that only your authenticated users can access resources.
Firewall Security Layer
We utilize AWS VPCs and Security Groups which act as a virtual, stateful firewall. Furthermore, RefAssured utilizes both Intrusion Detection System (IDS) and Intrusion Prevention System (IPS) to continuously monitor network traffic.
Security on Transfer
We enforce encrypted communications, protecting your information end to end. This ensures that your data is safe, secure, and available only to the intended users in your organization.
Monitoring and Threat Detection
With AWS Guard Duty and a suite of security tools, we can ensure that all threats are identified and eliminated before they are disruptive.
Multi-factor Authentication
Add an extra layer of account security with multi-factor authentication (MFA), also known as 2-step verification (2FA).
Security Questions
For any security-related questions or disclosures, send an email to our security team at security@refassured.com.
SOC 2 Type II
RefAssured Inc. has received a clean SOC 2 Type II attestation report. This rigorous, independent assessment of our internal security controls serves as validation of our dedication and adherence to the highest standards for security.
Feel secure? Let's get started.
See how RefAssured can help your business capture insight at scale.