Security

Granular Access and Audit Controls

Role-based access, permission groups and audit controls allow you to control and monitor the actions your Siemplify users can take, and what data, tools and dashboards they can access.

You can build your own roles to map to your organization’s data access policies for different classes of users. You can also map LDAP or SAML groups to different roles. In addition, Siemplify offers Multi-Tenancy for MSSPS which supports data integration.

Learn more about roles and permissions here and here.

User Authentication

Siemplify on-premises and cloud deployments support SAML integration for single sign-on (SSO) via SAML v2 compliant identity providers including Okta, Google and Azure among others. Siemplify can also integrate with other authentication systems, including LDAP and Active Directory.

For information on configuring a SAML provider in Siemplify, click here.

Data Encryption

Siemplify on prem and Cloud uses industry standard SSL/TLS encryption for data in transit. All forwarders and user sessions are secured in this manner. Electronic messaging is secured by opportunistic TLS encryption on the email gateways. Siemplify also offers data encryption at rest using AES 256-bit encryption.

Data Segregation for Siemplify Cloud

Cloud deployments run in a secured environment, and your data exists on virtually dedicated servers to ensure it remains isolated from other customers’ data.

Secure Data Access Handling

Siemplify software provides secure data handling, access controls, auditability, assurance of data integrity and integration with enterprise single sign-on solutions.

Siemplify Certifications

ISO 9001 Certification

ISO 9001 is defined as the international standard that specifies requirements for a quality management system (QMS). Siemplify uses this standard to demonstrate the ability to consistently provide products and services that meet customer and regulatory requirements.

ISO 27001 Certification

Siemplify is a proud owner of the International Organization for Standardization’s information security standard 27001 (ISO 27001) certification. ISO 27001 is a specification that outlines security requirements for an information security management system (ISMS).

SOC2 TYPE I

Siemplify undergoes annual Service Organization Controls 2 (SOC 2) Type 1 audits to evaluate its information security system controls as they relate to the Security, Availability, and Confidentiality of the Trust Services Principles. This Type 1 report assesses the design of security processes at a specific point in time.

For more information on Security and Hardening Procedures, click here.

Need more help with this?
Click here to open a Support ticket

Was this helpful?

Yes No
You indicated this topic was not helpful to you ...
Could you please leave a comment telling us why? Thank you!
Thanks for your feedback.