Data Hosting Facility
Your Security. Our Priority.
We employ the highest standards for safeguarding your data at all times. Your organization’s data is hosted at secure, Tier 3, SAS 70 Type II, PCI compliant hosting facilities.
Physical Security
Production equipment housed at a facility with 24-hour physical security, palm print and picture identification systems, redundant electrical generators, redundant data center air conditioners, and other backup equipment designed to keep servers continuously up-and-running.
Data Encryption
The strongest encryption products to protect customer data and communications, including 128-bit SSL Certification and 1024-bit RSA public keys — the lock icon in the browser indicates that data is fully shielded from access while in transit.
User Authentication
Software access only with a valid username and password combination, which is encrypted via SSL while in transmission.
Application Security
A robust application security model that prevents one ESO Solutions customer from accessing another’s data — reapplied with every request and enforced for the entire duration of a user session.
Operating System Security
Tight operating system-level security with a minimal number of access points to all production servers. Strong passwords for operating system accounts, with no master password database for production servers. Operating system maintenance at each vendor’s recommended patch levels for security and hardened by disabling and/or removing any unnecessary users, protocols and processes.
Database Security
Controls on database access at the operating system and database connection level for additional security. Restricted production database access to a limited number of points, with no master password database for production servers.
Server Management Security
ESO employees have no direct physical access to ESO Solutions’ production equipment.
Reliability and Backup
Off-site, automatic client data backups are performed nightly.
Disaster Recovery
Servers housing in a Tier-IV Internet Data Center (IDC) equipped with redundant power, multi-layered security, effective environmental controls and cooling systems, and 24×7 monitoring. Built-in redundancy for each component of our hardware infrastructure, with multiple database servers with a Raid-5 configuration.
