Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Skilltech Solutions Ltd - Accreditations

ISO27001

Image RemovedImage Added

Cyber Essentials Plus

Image RemovedImage Added

Data Storage

Where is data stored for EPA Pro?

  • Data is stored with our hosting partner - Positive Internet.

Positive Internet are a UK based company with datacentres in London, Cambridge and Manchester, specifically, Cambridgeshire for primary hosting, Manchester for network peering and Manchester for DR facilities

They have ISO 27001:2013 accreditation

  • They have internal bastion servers which mediate admin access to the platform.

...

Application Development Security

Do you use Standards in the Software Development Lifecycle?

Yes, the application is built on an industry standard framework to utilise the latest security features.  Care is taken to ensure that developments do not expose vulnerabilities in the application.  This is checked via an annual penetration test and follows OWASP (Open Web Application Security Project) Standards.

For more info on OWASP - About Us | The OWASP Foundation

Is there a fully documented Software Development Release Cycle?

This is covered off in Confluence

Do you have Versioning Control

Yes, all within Bitbucket & Atlassian

Is the Application developed in adherence to company policies

Is Application security testing part of the product lifecycle?

Are there Separate Development/Test/Staging/Production environments?

Do you employ Change Management procedures?

Hosting Partner

Everything is logged and has to go through their process for any change management

Internally

All changes to hardware or software is done via Cambridge Support and signed off by Ian Jarvis MD of Skilltech Solutions.

Documented in Information Security Standards - Systems Development v1.0

Is SSO (Single Sign On) Supported for Microsoft & Google?

...