Security Policy

 

Updated 12 December 2018

 

PROTECTING YOUR DATA

We’re committed to the security of your organisation’s data and provide multiple layers of protection for the governance information you trust to BoardPro.

 

YOU CONTROL ACCESS

As a BoardPro customer you have the flexibility and control to invite unlimited users into your organisation to collaborate on your governance matters.  The administrators of your organisation have control over who has access and what they are able to do. Our customer support staff do not access your information unless you invite them to help.  Please see our Privacy Policy for further information relating to use and storage of personal information.

 

USER AUTHENTICATION

We provide standard access to the BoardPro software through a login and password.

 

DATA ENCRYPTION

We encrypt all data that goes between you and BoardPro using industry-standard TLS (Transport Layer Security), protecting your governance data.

All uploaded documents are encrypted at rest when it is stored on our servers, and encrypted when we transfer it between data centres for backup and replication.

 

SECURE DATA CENTRES

BoardPro’s servers are located within enterprise-grade Australasian data centres that employ robust physical security controls to prevent physical access to the servers they house. These controls include 24/7/365 monitoring and surveillance, on-site security staff and regular ongoing security audits. BoardPro maintains multiple geographically separated data replicas and hosting environments to minimise the risk of data loss or outages.

 

BOARDPRO DOES NOT SEND SENSITIVE INFORMATION TO THIRD PARTY APPLICATIONS IN DELIVERING THE SERVICE

BoardPro uses third-party analytics services to help us understand your usage of our services. In particular, we provide a limited amount of your organisation information (such as the name) for analytics purposes when you use our product.

BoardPro does NOT send sensitive information to any third party.  Sensitive Information includes details of Meetings, Agendas or Minutes, Documents or communication content. This is never sent out of BoardPro without your instruction.

 

BOARDPRO CAN AGGREGATE YOUR NON-IDENTIFIABLE DATA

By using the Service, you agree that BoardPro can access, aggregate and use non-identifiable data BoardPro has collected from you. This data will in no way identify your organisation or any individual.

BoardPro may use this aggregated non-identifiable data to:

  • assist us to better understand how our customers are using the Service,
  • provide our customers with further information regarding the uses and benefits of the Service,
  • otherwise to improve the Service.

 

DISASTER RECOVERY AND READINESS

BoardPro performs real-time data replication between our geographically diverse, protected facilities, to ensure your data is available and safely stored. This means that should even an unlikely event occur, such as an entire hosting facility failure, we can switch over quickly to a backup site to keep BoardPro and your organisation running. We transmit data securely, across encrypted links.

 

CONSTANT UPDATES AND INNOVATION

We’re constantly enhancing BoardPro, delivering new features and performance improvements. Updates are delivered frequently, with many of them delivered without interrupting you.

 

For more information please contact us.