Security Whitepaper - YSoft SAFEQ Cloud | Page 24

SECURITY WHITEPAPER

SECURITY WHITEPAPER

Y SOFT EMPLOYEE ACCESS TO CUSTOMER PORTALS
Customer Support , Services , and other customer engagement staff may request JITA to customer portals on a time limited basis . Requests for access are limited to their work responsibilities associated with supporting and servicing our customers . All access requests , logins , queries , page views and similar information are logged .
CORPORATE AUTHENTICATION AND AUTHORISATION
Access to the Corporate network , both remotely and while in office , requires multi factor authentication ( MFA ), and any SaaS applications in use by Y Soft require SSO with MFA to facilitate centralized access control .
Password policies follow industry best practices for required length , complexity , and rotation frequency .
We built an extensive set of support systems to streamline and automate our security management and compliance activities . In addition to many other functions , the system sweeps our product and corporate infrastructure several times daily to ensure that permission grants are appropriate , to manage employee events , to revoke accounts and access where needed , to compile logs of access requests , and to capture compliance evidence for each of our technology security controls . These internal systems sweep the infrastructure validating that it meets approved configurations on a 24-hours basis .
YSoft SAFEQ Cloud - 24 - YSOFT . COM