window.nitroFragments['46cf7c364758215b4b9ebc5be712004a'] = {"isLazyLoaded":true,"content":"<div id='av_section_2' class="avia-section av-k5sbi9ir-d55d7f36692169f7dc866b4b16c2395e main_color avia-section-huge avia-no-border-styling avia-builder-el-3 el_after_av_section avia-builder-el-last avia-bg-style-fixed container_wrap fullsize nitro-lazy-render" nitro-fragment-parent><div class='container av-section-cont-open'><div class='template-page content  av-content-full alpha units'><div class='post-entry post-entry-type-page post-entry-17583'><div class='entry-content-wrapper clearfix'> <div class='flex_column av-3abxq4-3c6b2bace74fa97ae919882dff1b2a30 av_four_fifth  avia-builder-el-4  avia-builder-el-no-sibling  first flex_column_div av-zero-column-padding'><section class='av_textblock_section av-k5r5acdy-3a79370f5c55b03a653c673e208fa23c'><div class='avia_textblock av_inherit_color'><h3 class="p3" id="security-drives-powerdmarcs-culture-value-and-the-platform">Security Drives PowerDMARC’s Culture, Value and the Platform</h3> <p>We focus on embedding security every step of the way and in all our processes, starting from our core engineering teams, as well as at an executive level as a strategic function that is responsible for critical, company-wide policies, decisions, and activities.</p> <p>As your trusted business partner, we not only believe in, but also act on a policy of transparency, offering responsible and timely communications. Furthermore, we hold others in our ecosystem to the same high security standards; ensuring that working with PowerDMARC means working with a vetted, secure solution and partner who understands that you expect the maximum return on your security investment.</p> <h3 class="p3" id="compliance">Compliance</h3> <p>PowerDMARC commits to compliance as a way of transparently communicating our security posture to our customers. PowerDMARC complies with the following standard regulations:</p> <ul> <li><strong>PCI-DSS</strong></li> <li><strong>ISO 27001</strong></li> <li><strong>GDPR</strong></li> <li><strong>California Consumer Privacy Act</strong></li> </ul> <h3 id="people">People</h3> <p>At PowerDMARC we recognize that our employees are the cornerstone of our security posture, and security controls are the most effective when they are supported by a robust security culture. As such, we engage our employees (and contractors) in a culture of security for the entire employee lifecycle, from the time they apply and throughout their time at PowerDMARC. This culture includes:</p> <ul> <li><strong>Background Checks</strong></li> <li><strong>Information Security Awareness</strong></li> <li><strong>Device Security Management</strong></li> </ul> <h3 id="product-security">Product Security</h3> <p>PowerDMARC’s Secure Systems Development Life Cycle (SSDLC) ensures that security is incorporated from the inception of a new project and continued throughout the entire life of the system. The security of services and applications is important to maintain the reliability and integrity of data under the stewardship of PowerDMARC. This has become increasingly important in recent years as applications are becoming more and more complex, and the cost of remediating a vulnerability after release is often relatively higher than if it had been detected during the early stages of development. We write secure-by-design software, embedding product security engineers to work with engineering from ideation through release.</p> <p>The scope of the SSDLC includes all systems development and integration projects used for and in support of the PowerDMARC service. Moreover, the process is applied to all project efforts associated with the development, implementation and maintenance of new and existing systems.</p> <h3 id="vulnerability-management-penetration-testing">Vulnerability Management &amp; Penetration Testing</h3> <p>We run automated vulnerability scanning on a monthly basis for our servers and instances. We also run 3rd party independent penetration tests at least every 12 months. The scope of the SSDLC includes all systems development and integration projects used for and in support of the PowerDMARC service. Moreover, the process is applied to all project efforts associated with the development, implementation and maintenance of new and existing systems.</p> <h3 id="all-new-features">All New Features</h3> <p>We perform end-to-end third-party penetration tests.</p> <h3 id="privacy-personal-data">Privacy &amp; Personal Data</h3> <p>Our Privacy Policy&nbsp; <a href="https://powerdmarc.com/privacy-policy/" data-wpel-link="internal" target="_self" rel="follow"><strong>https://powerdmarc.com/privacy-policy/</strong></a></p> <p>Our Cookie Policy &nbsp;<a href="https://powerdmarc.com/cookie-policy/" data-wpel-link="internal" target="_self" rel="follow"><strong>https://powerdmarc.com/cookie-policy/</strong></a></p> <p>GDPR Data Processing&nbsp; <a href="https://powerdmarc.com/data-processing-agreement/" data-wpel-link="internal" target="_self" rel="follow"><strong>https://powerdmarc.com/data-processing-agreement/</strong></a></p> <h3 id="access-control">Access Control</h3> <p>Principles of least privilege are applied to both employees and system components.</p> <h3 id="data-and-media-disposal">Data and Media Disposal</h3> <p>On customer&#8217;s request or otherwise following termination of the subscription services, if and to the extent a customer cannot delete customer data stored on PowerDMARC&#8217;s systems using the then existing features and functionality of the <a id="link_juicer" href="https://powerdmarc.com/powerdmarc-self-guided-platform-demo/" data-wpel-link="internal" target="_self" rel="follow">PowerDMARC Platform</a>. PowerDMARC will destroy the customer data in PowerDMARC&#8217;s custody or control.</p> <h3 id="ddos-protection">DDoS Protection</h3> <p>PowerDMARC services have built-in rate limiting and automated blocking features to mitigate advanced denial-of-service or authentication attacks. PowerDMARC infrastructure is protected against volumetric attacks by CloudFlare as well.</p> <h3 id="web-application-firewall">Web Application Firewall</h3> <p>PowerDMARC services are protected by Fortinet FortiWEB Web Application Firewall services.</p> <h3 id="payment-processing">Payment Processing</h3> <p>PowerDMARC processes all payments through Stripe.com and does not store any card information on its platforms or systems.</p> <p style="text-align:center;"> </p></div></section></div><p></p> </div></div></div>  </div></div>"}; window.dispatchEvent(new CustomEvent('nitrofragmentloaded', {detail: "46cf7c364758215b4b9ebc5be712004a"}));