Zoidii Logo

Security Policy

This Security Policy was last updated on October 23, 2024.

Zoidii is transforming the way organisations track and manage their maintenance, but the backbone of our success is providing a safe and trustworthy place for your data. Accordingly, we take security extremely seriously.

1. Data in Transit

All information passing between your browser and the Zoidii servers is encrypted using HTTPS 256-bit SSL encryption (See padlock on your address bar) and automatically pass through Cloudflare for domains to help worldwide accessibility and Distributed Denial of Service Protection (DDoS).
Zoidii Connection HTTPS

2. Hosting

Zoidii is hosted on Amazon Web Services(AWS), which is itself compliant with certifications such as SOC 2, CSA, ISO 27001, and more. According to the 2020 Gartner Magic Quadrant for Cloud Infrastructure and Platform Services, Amazon AWS Global Cloud Infrastructure is recognised as the most secure, extensive, and reliable cloud platform.
Firewall
Zoidii is hosted on Amazon AWS so it is backed by Amazon's state of the art firewall controls. Amazon monitors potential attacks with several tools, including a web application firewall and network-level firewall.

Database Encryption
The database is encrypted at rest, using AWS RDS’s AES-256 encryption, which has state-of-the-art security.

Intrusion Detection
All data traffic in the Zoidii network is monitored by Amazon Security, as a standard service provided by Amazon AWS.

Physical Security
Data is stored in Amazon data centres in multiple locations in the US, Ireland, and elsewhere. Amazon data centres are professionally managed with SOC 2 Type II and ISO 27001 certifications, among others. The certified protections include dedicated security staff, strictly managed biometric access control, video surveillance, fire suppression systems, and backup power generation.

Backups
Zoidii uses point-in-time backup, which means that for every change made to the database, a snapshot is saved. This snapshot can then be used later to restore the database to that exact point in time if something should go wrong. Data is stored on multiple servers at multiple locations in the Amazon AWS cloud, securing the data from a single hardware loss.

Vulnerability testing
We use automated code testing, vulnerability testing (including OWASP Top 10) and continuous monitoring technologies.

Contact

If you have any security concerns or questions, please contact Zoidii technical support at support@zoidii.com