Security. Built in.
Security is often a deciding factor in the success or failure of companies and only a single breach can result in an irrecoverable loss of public trust. As such security is of the utmost importance at Formbay and we strive constantly to protect our customers data and our IP moving within our infrastructure and at rest. That is why we are a trusted industry partner of federal government departments and large corporate enterprises
This document provides a high level overview of some of the key security terms and domains which we use to protect the security of our customers data, our data and our own IP and reputation
Secure, redundant, state-of-the-art cloud infrastructure
Formbay applications and data are hosted on AWS a secure, redundant, state-of-the-art cloud infrastructure located at geographically distributed locations within Australia in Sydney based instances.
Read moreHigh data availability & easy backup and recovery
Our data is stored on Amazon S3, a highly durable storage infrastructure designed for mission-critical and primary
data storage.
Objects are redundantly stored on multiple devices across multiple facilities in an
Proactive intrusion monitoring and prevention
Formbay implements network and ISP grade firewalls to provide IP filtering and intrusion detection protection.
All activity on the platform level is tracked and securely recorded using AWS CloudTrail audit logging. This gives us
Segmented application architecture & controlled access
Access to system credentials is regulated and controlled by Identity and Access Management (IAM) policies. These policies use granular permissions to allow each application access to the specific credentials it needs to perform it's tasks.
Read moreEnd-to-end encryption
All Formbay customer data and metadata is encrypted at rest using an industry-standard AES-256 encryption algorithm. Encryption and decryption work in the background with minimal latency, and are transparent to users, applications, and
Read moreRegular third-party audits & penetration tests
Formbay submits to regular third-party audits of our customer data handling, processing and storage systems. These help to ensure we exceed all statutory and regulatory requirements for our data handling and quality management systems
Read moreInternal Network & building security
Formbay uses a third-party cyber security expert to secure all office hardware security, including our office firewalls, malware detection on laptops and servers. Formbay offices are secured with 24/7 security cameras, building security,
Read moreSecurity is everyone's responsibilty
We practice the Principle of least privilege (POLP) which is limiting access rights for users to the bare minimum permissions they need to perform their work. We also believe "Security is everyone's responsibility" and not just the function of
Read moreISO Certification
Formbay is an ISO 9001:2015 and ISO 27001:2013 certified company. We focus on continuous improvement of our products and services to consistently meet our customer's expectations while ensuring a high level of data protection
Read more-
24/7
Security operations -
256-bit
SSL/TLS secured between application -
99.99%
Uptime guaranteed