| Nous Factory Security Governance |
Nous Factory clients need to place trust in our security and governance of the Cloud Nous environment so they feel confident their data will be protected and its integrity maintained. Data security and governance is an important part of any cloud business, a quintessential part of Nous Factory.
We apply and test this principle with every Nous team member we employee, every partner we unite with, every offer we make and every client we accept.
We believe in Transparent Security where rational so disclose governance aspects of our security design, policies and practices:
We discuss common security features we use including firewalls and data encryption
We will make disclosure when required by law or regulation
We may make disclosure depending on the associated risks
We clearly articulate what clients must do themselves to help protect their data and ensure accessibility
Within our governance is non-disclosure under some circumstances:
We do not disclose anything that could create a risk to our infrastructure or the integrity of the data we are entrusted with
We do not disclose anything that could create harm for a customer or partner
We will not promise anything that may prove difficult to achieve
We will not disclose information where that would result in a breach of legal or regulatory requirements
Nous Factory balance security against client cost, risk and convenience of use. Our clients want security that is sufficient to enable them to entrust their data to us without incurring too much cost or making user access inconvenient.
We make certain data is protected as it is transferred between our client and Nous Factory
We control the threat of hackers, online crime, viruses and spyware
As is legally possible our data is protected from foreign laws of disclosure and access. We ensure compliance to regulations and standards with regards data privacy and protection
We offer industry best Quality Of Service (QOS) with regards data accessibility. We maintain data recovery needs for all possible scenarios, including catastrophic
We finish where we began:
Nous Factory clients need to place trust in our security and governance of the Cloud Nous environment so they feel confident their data will be protected and its integrity maintained.
Our commitment:
Authentication is by username and password at the ‘cloud’ (please also see password policy below). Login data is encrypted with shra1RSA signature algorithm, certificate issued by DigiCert (High Assurance CA-3).
All client data is stored at the Polaris Data centre in Queensland. This facility offers best in class availability and physical data protection; technical details.
All client data is stored encrypted on a Storage Area Network (SAN), separate from the regular network system; connection is only made on login to the users profile. The client username and password is required to decrypt individual client data using NT File System (NTFS) permissions. The only access to client data is through the Cloud Nous Desktop.
Nous Factory complies with all applicable laws, rules and regulations including, without limitation, the Privacy Act 1988 (Cth) and the National Privacy Principles contained in Schedule 3 of that Act, regardless of whether the Customer is a small business operator for the purposes of that Act, or would otherwise be exempted from complying with that Act.
Dependant on the client’s contract with Nous Factory, personal data including Credit Card information if used is held:
Client questions raised through our support Ticket System and Live Chat is held encrypted at rest on servers located in Dallas, Texas, USA at rackspace hosting. Questions and answers are the only data held at rackspace
Client enrolments and chat related to Nous Factory web seminars are held in Cisco's Melbourne Australia located data centre.
All client data is stored encrypted on a Storage Area Network (SAN) separate from the regular network. Connection between the SAN and regular network is only made on login to the user's profile through the Cloud Nous Desktop. The client username and password is required to decrypt individual client data using NT File System (NTFS) permissions. The only access to client data is through the Cloud Nous Desktop.
Nous Factory and their suppliers do not have access to client data. The only access to client data is through the Cloud Nous Desktop.
All client data is stored at the Polaris Data centre in Queensland. This facility offers best in class availability and physical data protection; technical details.
Nous Factory is a fully Australian owned company. Part of our Corporate Governance looked at continuity of client services if succession was required.
In such an event, our major supplier would ensure client service is maintained. This is dictated in the Nous Factory & supplier agreement:
“...the Supplier will assume control and ownership of the End User together with all of the Products supplied by Supplier and day to day responsibility of all matters associated with the End User. All existing contracts between the Customer and End User will novate to the Supplier.”
Our supplier is an Australian company, 50% owned by a global parent.
Back