Hacker News new | ask | show | jobs
by turnerc 1919 days ago
Damn these security questionnaires are a pain and I appreciate this product, might not be best to feature Anthem on your frontpage about a security related product though...

Additionally I'd be a little wary of handing off all my documentation to a third-party how do you protect this?

1 comments

We practice what we preach when it comes to security. So all customer data is encrypted at rest and in transit, access is limited using RBAC, we have 2FA on everything, etc.

We also never send customer security data to 3rd parties, so your data is not heading off in some API to be processed externally, it all happens entirely in our environment.

Admittedly, we've not done SOC2 or ISO27001 yet (the company is only a few months old), but it's on our roadmap, and we're putting the appropriate controls in place from the get go.

I doubt I'll be able to convince you to trust us in a HN comment, so if you'd like to hear more, please do reach out :)