Your workforce management ecosystem can’t be effective if it’s not secure and protected. Workforce Logiq takes advanced precautions and safeguards when it comes to the security of our platforms and the privacy of your data.
Network Perimeter Security
Exterior perimeter walls, doors, and windows constructed of materials rated for ballistic protection
24 x 7 Uninterruptible Power Supply (UPS) and standby generator support
Equipment secured within locked cages or vaults
Data center security staff act as custodians for cage keys with audit process in place
Photo ID and biometrics required at main data center entrance
Closed circuit television
Security information and event management (SIEM) for incident and response
IDS and IPS application that is used to monitor and prevent attacks on the network
Stateful Firewalls in High-availability (HA) configuration
DNS Proxy for security
SEIM log management tool suite
Ransomware file and network tools
State of the art anti-virus solution
Unique user accounts
Configurable password rules
Unique tokens at login
Individual user sessions identified and re-verified with each transaction
All data stored in database and encrypted at rest at no additional cost
128/256-bit SSL/HTTPS technologies
Encrypted cookies, no caching, managed and encrypted social security numbers and passwords, and middle-tier validation routines
Passwords utilize AES 256-bit encryption
All employee devices encrypted to ensure protection in case of loss or theft
Intrusion Detection and Penetration Testing
Servers locked in server room with a closed-circuit television (CCTV) camera for 24 x 7 monitoring
Room-authorized badge access and a biometric hand reader
Required secure site login HTTPS
Hardware-based intrusion detection and intrusion prevention systems
Third-party security audits
External penetration testing by a Certified Third Party
SOC1 audit annually
Workforce Logiq’s ISO 27001:2013 Certification
Our ISO 27001 certification standard mandates the requirements for bringing information security under explicit control and addresses each of the three pillars of information security: people, processes, and technology.
Workforce Logiq has:
Examined our information security risks considering all threats, vulnerabilities, and impacts.
Implemented a formal Information Security Management System (ISMS) based on continuous improvement.
Formalized management’s oversight of the entire security program.
Established controls to specifically address the protection of personal data in the cloud.
As part of our GDPR program, Workforce Logiq continues to review and revise our policies, procedures, and third-party agreements–all of which are designed to ensure that our operations and services are GDPR compliant. For example, we have or are in the process of completing the following efforts:
Implemented comprehensive policies and procedures addressing data security, record keeping, and cross-border transfers
Developed processes for responding to EU data subject requests
Developed comprehensive policy and template for conducting data protection impact assessments
Implemented ongoing policy and workflow for executing data protection agreements (DPAs) with vendors and other third parties to ensure we process EU personal data in a manner that is compliant with the GPDR
Conducted training sessions to inform Workforce Logiq employees and various business departments about the GDPR’s requirements and its impact on their operations
Self-certified to the EU-U.S. Privacy Shield Framework for purposes of transferring personal data from the European Union to the United States