Nieuw!

Your data stored securely, redundantly and within Europe.

Providing a platform on which many organizations register their processes and information comes with responsibility. A responsibility we take very seriously.

Certification

ISO2HANDLE as an organization is ISO 27001 certified. This means that our information security complies with the ISO 27001 standard and its 114 controls.

We do this entirely through our own platform and thus have set this up as a complete ISMS. In addition, we comply with the AVG legislation and numerous other security guidelines. Think about:

  • Encryption policies
  • Personnel policies
  • Screening
  • Access Security
  • Backup policy
  • Asset management and security
  • Incident Management
  • Data classification
  • Internal awareness trainings
  • Stakeholder management
  • and more

Environmental Security

Environments are completely isolated from each other at both the database level and the file storage level to best secure your data. We use, among others:

  • Secure SSL connection
  • Minified encoded and chunked source code
  • Firewall
  • Two factor authentication
  • Advanced rights structure
  • Encrypted date in transit
  • Encrypted data at rest
  • Isolated databases
  • Redundant infrastructure
  • And more

Automatic backups

Environments are automatically backed up several times each day. These backups initially go to hot-storage. Then they are backed up again each day to a cold-storage server.

  • Multiple hot-storage backups per day
  • Daily cold-storage backups
  • All backups are encrypted with unique keys
  • All hosting within the Netherlands and Germany inISO27001-certifieddata centers

PEN testing

The platform has now experienced multiple PEN tests from multiple parties and has so far passed them all with flying colors.

This is how we are:

  • Tested by Qbit in 2020; Outcome: no critical or high points. Other points have been fixed.
  • Tested in 2020 by Hoffmann; Outcome: no critical or high points. Other points corrected.
  • From 2021 automatic daily testing by PEN test testing software
  • Tested in 2021 by an independent party; Outcome: no critical or high points. Other points fixed.
  • Tested in 2021 forISO27001by Digitrust
  • And more

Escrow

By taking out this insurance the source code is deposited with ESCROW. A guarantee for your (business) continuity.

Want to know more about our Escrow? Click here

How do we handle your data?

At what times is your service desk open?

That is available by phone on weekdays from 9 a.m. to 5 p.m. In addition, an online ticket desk is available where you can report questions or problems 24/7. An academy is also available with more than 50 articles, an online video training course and various instructional videos.

How does ISO2HANDLE handle backups?

A full backup of each environment is made every 12 hours (hot storage). In addition, a cold storage backup of your environment is also made every day and stored in a secure data center in the Netherlands. You can also retrieve data from the application yourself via an Excel and/or PDF dump.

What uptimes are you aiming for?

We aim for an uptime of 99.5% during weekdays from 09:00 to 17:00.

Where is the data?

Data is stored in Digital Ocean's hosting center(ISO 27001 certified). This is located in Amsterdam. Hot storage backups are stored encrypted (with unique keys) in Frankfurt. Cold backups are stored encrypted (with unique keys) in the Netherlands.

Questions & Answers

When do you make backups?
There are 2 hot storage backups of each environment every day. And in addition, a cold storage backup is made every day.
Where are your backups stored?
Hot storage backups are stored within Europe in Germany. Cold storage backups are stored in the Netherlands in a secure data center on managed hardware.
Do you check backups for corruption?
We randomly check backups for corruption.
Do you have a backup test process?
Yes, we test backups daily and are working on an automatic testing process that detects corruption.
What do you do if any of these things are not in order?
If any of these items are out of order, notifications are sent immediately.
Is monitoring in place?
Yes. We monitor all of our servers and backup 24/7. In turn, our monitoring systems are also monitored so that any problems are detected immediately.
How do the different environments run side by side in backup?
All environments are separate from each other and databases therefore never touch.
How is the traffic to your platform?
All traffic to and from our platform is encrypted.
Do you use a firewall?
Each environment has its own firewall.
Are you ISO 27001 certified?
We ourselves as well as our hosting center is ISO 27001 certified.
How do you monitor different environments?
We monitor each environment live on some 50 parameters including uptime, presence of hot storage backups and presence of cold storage backups.
Has a PEN test been performed yet?
Yes, we conduct PEN tests with some regularity.