Security is paramount on the Internet and Tenzing takes it very seriously. Because of its comprehensive Information Security Management System (ISMS), Tenzing is one of the only IT services companies in North America audited and recommended for ISO 27001 (Information Security) certification, the most comprehensive information security standard in the World. Moreover, as a Canadian company, Tenzing is bound by strict privacy laws which protect its customer's confidential information.
With Tenzing, customers have access to a comprehensive suite of security services. When taken together, these services offer a proactive and multi-layered approach to information security that provides everything necessary to maintain system and data integrity and ensure compliance with key industry information security standards, such as PCI and SOX. Tenzing's security services and policies are designed, maintained, and enforced by Tenzing's expert security team.
Key Business Benefits:
- Reduce Costs. Save time and money by leveraging Tenzing's ISO 27001, SAS70 and PCI certifications to assist with compliance requirements
- Mitigate Risk. Better protect the integrity of your data and brand through the proactive and multi-layered approach of Tenzing's security team
Physical Security Services:
-
Tenzing's datacenters are protected by multi-layered physical security measures. These security measures include: 24x7x365 security personnel, dual-factor electronic and bio-metric authentication systems, surveillance cameras, and multiple man-traps. Access to the datacenter floor is strictly limited to Tenzing's datacenter technicians and bonded facility maintenance engineers.
Network Security Services:
-
Security is ingrained in Tenzing's network services through its basic architecture, specialized security tools, and the policy and procedures which govern its management. For example, Tenzing employs: separate physical network segments for public ("front-end"), private ("back-end"), and backup and administration; vLANing, NATing and VIPing; Packet per Second "Storm" controls; encrypted assess controls; default deny-all policies; and more.
Firewall & VPN Services:
-
Tenzing's Firewall and Virtual Private Networking (VPN) services are built on state-of-the-art Juniper ISG technology engineered specifically for service providers such as Tenzing. This enterprise-class security solution uses the latest Application Specific Integrated Circuit (ASIC) technology to enable wire-speeds for advanced security features, such as: stateful packet inspection firewalling and client-based and site-to-site VPN services.
Intrusion Protection Services:
-
Tenzing's Firewall and Virtual Private Networking (VPN) services are built on state-of-the-art Juniper ISG technology engineered specifically for service providers such as Tenzing. This enterprise-class security solution uses the latest Application Specific Integrated Circuit (ASIC) technology to enable wire-speeds for advanced security features, such as: stateful packet inspection firewalling and client-based and site-to-site VPN services.
Abuse Management:
-
Tenzing's security team works proactively with all its upstream providers and clients to deal with network abuse issues. Tenzing has a strict Acceptable Use Policy (AUP) that governs its network and protects the integrity of its service. DDoS management occurs in concert with upstream providers and Prolexic: the industry leader in DDoS protection services
Compliance Testing and Auditing:
-
A comprehensive compliance testing and auditing service is available from Tenzing. These services will analyze your application for known security issues, report non-compliance, provide remediation suggestions against common information security standards (such as SOX, HIPAA, PCI), and create an audit trail to prove compliance over time.