window.nitroFragments['373bee098058f413005e5e7ebedf725a'] = {"isLazyLoaded":true,"content":"<div id='av_section_2' class="avia-section av-k5sbi9ir-d55d7f36692169f7dc866b4b16c2395e main_color avia-section-huge avia-no-border-styling avia-builder-el-3 el_after_av_section avia-builder-el-last avia-bg-style-fixed container_wrap fullsize nitro-lazy-render" nitro-fragment-parent><div class='container av-section-cont-open'><div class='template-page content  av-content-full alpha units'><div class='post-entry post-entry-type-page post-entry-16958'><div class='entry-content-wrapper clearfix'> <div class='flex_column av-3abxq4-3c6b2bace74fa97ae919882dff1b2a30 av_four_fifth  avia-builder-el-4  avia-builder-el-no-sibling  first flex_column_div av-zero-column-padding'><section class='av_textblock_section av-k5r5acdy-3a79370f5c55b03a653c673e208fa23c'><div class='avia_textblock av_inherit_color'><h3 class="p3" id="subscriber-data-and-management"><strong>Subscriber Data and Management</strong></h3> <p>PowerDMARC limits its personnel’s access to subscriber data as follows:</p> <ul> <li>Requires unique user access authorization through secure logins and passwords, including <a id="link_juicer" href="https://powerdmarc.com/turn-on-two-factor-authentication/" data-wpel-link="internal" target="_self" rel="follow">multi-factor authentication</a> for Cloud Hosting administrator access;</li> <li>Limits the subscriber data available to PowerDMARC personnel on a “need to know” basis;</li> <li>Restricts access to PowerDMARC’ production environment by PowerDMARC personnel on the basis of business need;</li> <li>Encrypts user security credentials for production access; and</li> <li>Prohibits PowerDMARC personnel from storing subscriber data on electronic portable storage devices such as computer laptops, portable drives and other similar devices.</li> <li>PowerDMARC logically separates each of its subscribers’ data and maintains measures designed to prevent subscriber data from being exposed to or accessed by other customers.</li> </ul> <h3 class="p3" id="data-encryption"><strong>Data Encryption</strong></h3> <p>PowerDMARC provides industry-standard encryption for subscriber data as follows:</p> <ul> <li>Implements encryption in transport and at rest;</li> <li>Uses strong encryption methodologies to protect subscriber data, including AES 256-bit encryption for subscriber data stored in PowerDMARC’ production environment; and</li> <li>Encrypts all subscriber data located in cloud storage while at rest.</li> </ul> <h3 id="network-security-physical-security-and-environmental-controls"><strong>Network Security, Physical Security and Environmental Controls</strong></h3> <ul> <li>PowerDMARC uses firewalls, network access controls and other techniques designed to prevent unauthorized access to systems processing subscriber data.</li> <li>PowerDMARC maintains measures designed to assess, test and apply security patches to all relevant systems and applications used to provide the Services.</li> <li>PowerDMARC monitors privileged access to applications that process subscriber data, including cloud services.</li> <li>The Services operate on Amazon Web Services (“AWS”) and Heroku and are protected by the security and environmental controls of Amazon. Detailed information about AWS security is available at https://aws.amazon.com/security/ and http://aws.amazon.com/security/sharing-the-security-responsibility/. For AWS SOC Reports, please see https://aws.amazon.com/compliance/soc-faqs/.</li> <li>Subscriber data stored within AWS is encrypted at all times. AWS and do not have access to unencrypted subscriber data.</li> </ul> <h3 id="incident-response"><strong>Incident Response</strong></h3> <p><span style="font-weight:400;">If PowerDMARC becomes aware of unauthorized access or disclosure of subscriber data under its control (a “Breach”), PowerDMARC will:</span></p> <ul> <li style="font-weight:400;" aria-level="1"><span style="font-weight:400;">Take reasonable measures to mitigate the harmful effects of the Breach and prevent further unauthorized access or disclosure.</span></li> <li style="font-weight:400;" aria-level="1"><span style="font-weight:400;">Upon confirmation of the Breach, notify the customer in writing of the Breach without undue delay. Notwithstanding the foregoing, PowerDMARC is not required to make such notice to the extent prohibited by applicable laws, and PowerDMARC may delay such notice as requested by law enforcement and/or in light of PowerDMARC legitimate needs to investigate or remediate the matter before providing notice.</span></li> </ul> <h3 id="each-notice-of-a-breach-will-include"><b>Each notice of a Breach will include:</b></h3> <ul> <li style="font-weight:400;" aria-level="1"><span style="font-weight:400;">The extent to which subscriber data has been, or is reasonably believed to have been, used, accessed, acquired or disclosed during the Breach;</span></li> <li style="font-weight:400;" aria-level="1"><span style="font-weight:400;">A description of what happened, including the date of the Breach and the date of discovery of the Breach, if known;</span></li> <li style="font-weight:400;" aria-level="1"><span style="font-weight:400;">The scope of the Breach, to the extent known; and</span></li> <li style="font-weight:400;" aria-level="1"><span style="font-weight:400;">A description of PowerDMARC’ response to the Breach, including steps PowerDMARC has taken to mitigate the harm caused by the Breach.</span></li> </ul> <h3 id="business-community-management"><b class="nitro-lazy">Business Community Management</b></h3> <ul> <li style="font-weight:400;" aria-level="1"><span style="font-weight:400;">PowerDMARC maintains an appropriate business continuity and disaster recovery plan.</span></li> <li style="font-weight:400;" aria-level="1"><span style="font-weight:400;">PowerDMARC maintains processes to ensure failover redundancy with its systems, networks and data storage.</span></li> </ul> <h3 id="personnel-management"><b>Personnel Management</b></h3> <ul> <li style="font-weight:400;" aria-level="1"><span style="font-weight:400;">PowerDMARC performs employment verification, including proof of identity validation and criminal background checks for all new hires in accordance with applicable law.</span></li> <li style="font-weight:400;" aria-level="1"><span style="font-weight:400;">PowerDMARC provides training for its personnel who are involved in the processing of the subscriber data to ensure they do not collect, process or use subscriber data without authorization and that they keep subscriber data confidential, including following the termination of any role involving the subscriber data.</span></li> <li style="font-weight:400;" aria-level="1"><span style="font-weight:400;">PowerDMARC conducts routine and random monitoring of employee systems activity.</span></li> <li style="font-weight:400;" aria-level="1"><span style="font-weight:400;">Upon employee termination, whether voluntary or involuntary, PowerDMARC immediately disables all access to PowerDMARC systems.</span></li> <li style="font-weight:400;" aria-level="1"><span style="font-weight:400;">PowerDMARC conducts annual information security awareness training and on-going briefing to its employees.</span></li> </ul> <h3 id="contact"><b>Contact</b></h3> <ul> <li style="font-weight:400;" aria-level="1"><span style="font-weight:400;">If you have any questions about this policy, please <a id="link_juicer" href="https://powerdmarc.com/contact-us/" data-wpel-link="internal" target="_self" rel="follow">contact us</a> at <a href="/cdn-cgi/l/email-protection" class="__cf_email__" data-cfemail="3645434646594442764659415344525b5744551855595b">[email&#160;protected]</a>.</span></li> </ul> <div class="c-message_kit__gutter"> <div class="c-message_kit__gutter__right" data-qa="message_content"> <div class="c-message_kit__blocks c-message_kit__blocks--rich_text"> <div class="c-message__message_blocks c-message__message_blocks--rich_text"> <div class="p-block_kit_renderer" data-qa="block-kit-renderer"> <div class="p-block_kit_renderer__block_wrapper p-block_kit_renderer__block_wrapper--first"> <div class="p-rich_text_block" dir="auto"> <div class="p-rich_text_section"><a href="https://powerdmarc.com/platform-security/" data-wpel-link="internal" target="_self" rel="follow"><span style="color:#36f;"><strong>Read about our Platform Security details</strong></span></a></div> </div> </div> </div> </div> </div> </div> </div> <div class="c-message_kit__gutter"> <div class="c-message_kit__gutter__right" data-qa="message_content"> <div class="c-message_kit__blocks c-message_kit__blocks--rich_text"> <div class="c-message__message_blocks c-message__message_blocks--rich_text"> <div class="p-block_kit_renderer" data-qa="block-kit-renderer"> <div class="p-block_kit_renderer__block_wrapper p-block_kit_renderer__block_wrapper--first"> <div class="p-rich_text_block" dir="auto"> <div class="p-rich_text_section"></div> </div> </div> </div> </div> </div> </div> </div> <p>Last Updated: May 10, 2020</p> <p style="text-align:center;"> </p></div></section></div> <p></p> </div></div></div>  </div></div>"}; window.dispatchEvent(new CustomEvent('nitrofragmentloaded', {detail: "373bee098058f413005e5e7ebedf725a"}));