Silverfin
Security Culture and Compliance at Silverfin
Pages
8
Time to read
7 mins
Publication
Language
English
Pages
8
Time to read
7 mins
Publication
Language
English
This document is a guide detailing the security culture and compliance measures implemented by Silverfin. It outlines how Silverfin prioritizes security through a philosophy of trust, transparency, and responsible communication with customers. The guide describes the company's commitment to compliance with frameworks such as ISO27001 and NIST, ensuring that personal data is protected in accordance with GDPR and the UK Data Protection Act. The document explains the importance of a robust security culture, which includes employee training, awareness campaigns, and background checks. It details access management practices, including the principle of least privilege and zero trust protocols. Endpoint protection measures and secure development lifecycle practices are also discussed, emphasizing the need for vulnerability management and incident response strategies. Additionally, the guide covers the cloud infrastructure used by Silverfin, highlighting the security measures in place for data encryption, disaster recovery, and availability. Overall, it presents a comprehensive view of Silverfin's approach to maintaining a secure environment.