This category tackles all questions concerning our server infrastructure and security.
Yes, we employ servers which transmit, process and store Scoped Data and which meet all relevant security and compliance criteria according to current standards
No.All our (third-party hosted) servers and devices within QR Planet's networks and environments only use OS versions that are up to date and patched regularly.
Our server security configuration standards use established frameworks, are documented and based on vendor recommendations and common industry standards.
Yes. Server security configurations are regularly reviewed and updated when necessary to fully ensure compliance with all documented security standards.
Our servers are configured in accordance with all common security standards and are regularly patched and updated. Security standards are documented.
Yes. The necessity of all services on our servers is evaluated regularly and all services deemed unnecessary are shut down.
Only custom passwords according to our comprehensive password policy are used in our systems and devices.
We offer comprehensive logs for all accounts, and also keep logs for all access attempts to our web servers for two weeks, including all IP addresses used.
Yes. We use OpenVAS, a full-featured vulnerability scanner, to perform daily scans of all our systems and applications. All found CVEs are being patched promptly.