At Quickpass security is very important to us. As the vendor of a Software as a Service (SaaS) product designed for Managed IT Service Providers (MSP) to use on their customer infrastructure it is important to outline the key responsibilities each party shares in the hosting and use of Quickpass products. Quickpass products are also hosted on public cloud infrastructure which also requires the areas of shared responsibility be clearly defined.
This page provides an illustration that the end-user customer, the partner (MSP), Quickpass and the Cloud Providers are responsible for. We encourage you to consult your own legal counsel to familiarize yourself with the requirements that govern your situation. A proper focus on laying out your business objectives will enable you to establish, maintain, and extend Quickpass Cybersecurity products and services as a strategic platform for your organization.
Responsibility | Customer | Partner | Quickpass | Cloud Provider |
Asset Definition |
* |
|||
Data management (classification and retention) | * | |||
Media disposal and destruction | * | |||
Backup and restore | * | |||
User Provisioning | * | |||
Authentication and authorization | * | |||
MFA/SSO | * | * | ||
Data encryption | * | |||
Encryption key management | * | |||
Security logging and monitoring |
* | * | ||
Vulnerability management | * | * | ||
Business continuity and disaster recovery | * | |||
Secure SDLC processes | * | |||
Penetration testing | * | |||
Privacy | * | * | ||
Asset Patching | * | |||
Infrastructure Patching (Cloud) | * | |||
Compliance: regulatory and legal | * | * | * | * |
Infrastructure management | * | |||
Security management | * | |||
Secure configuration of instance | * | |||
Employee vetting or screening | * | * | * | |
Environment controls | * | * | ||
Physical security | * | * |
Comments
0 comments
Please sign in to leave a comment.