TracCloud: Security

From Redrock Wiki

Revision as of 20:07, 21 March 2025 by Redrock (talk | contribs) (Created page with "{{WIP}} {{TracCloudGuideTabs}} <div class="tcWidgetPage"> <div class="category"> {{TracCloudTechTOC}} </div> '''TracCloud Security Details'''<br> This page details TracCloud's certifications, hosting information, etc.<br><br> <b>Full Compliance:</b> * NIST SP800-53 rev. 5 High Baseline * CSA CAIQ v4 * ADA * HECVAT (available upon request) * FERPA * WCAG (VPAT available upon request)<br><br> <b>Certifications:</b> * TX-RAMP Level 2 * CSA-STAR Level 1<br><br> <b>Hostin...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

    This page is still in progress! Come back later to learn more.


TracCloud Security Details

This page details TracCloud's certifications, hosting information, etc.

Full Compliance:

  • NIST SP800-53 rev. 5 High Baseline
  • CSA CAIQ v4
  • ADA
  • HECVAT (available upon request)
  • FERPA
  • WCAG (VPAT available upon request)

Certifications:

  • TX-RAMP Level 2
  • CSA-STAR Level 1

Hosting & Security:

  • Highly scalable and distributed AWS Cloud
  • Data is encrypted in transit using TLS, both internally and externally to the user
  • Data is encrypted at rest using industry standard AES 256bit encryption
  • Web Access Firewall (WAF)
  • Encrypted logging
  • Automated continuous backups
  • Network intrusion detection
  • Host-based intrusion detection
  • Continuous vulnerability and software inventory scans
  • Role-Based Access Control (RBAC)

Integration:

  • Single-Sign-On (SSO): SAML, CAS, LDAP
  • Mail: SMTP, OAuth (Modern Auth)