All data is transferred using HTTPS SHA-256 with RSA Encryption. We ensure that all default account URL’s have a valid SSL Certificates using a wildcard certificate. We use Let’s Encrypt to automate SSL Certificate creation for all custom domains. This means that all Thrivedash.com accounts are secured by HTTPS. The result of this is that any data you send in or out of Proejct.co is encrypted via HTTPS.
Hosting & infrastructure
We use Amazon Web Services (AWS) US datacenter for our infrastructure. This includes the use of Elastic Compute Cloud (EC2) technology.
The infrastructure that AWS provides is designed and managed in alignment with best security practices and a variety of IT security standards. The following is a partial list of assurance programs with which AWS complies:
- SOC 1/ISAE 3402, SOC 2, SOC 3
- FISMA, DIACAP, and FedRAMP
- ISO 9001, ISO 27001, ISO 27017, ISO 27018
Read more about AWS Security here: https://aws.amazon.com/security/
User access to each account is role based with each role having a set of core permissions. This means each user has a specific access level to each account and can only access the data allowed by their access level.