At WebEngage, the security and privacy of your data are our top priorities. We adhere to stringent global standards to protect your information at every stage. Our data handling practices include advanced encryption for data at rest and in transit, supported by fully compliant infrastructure. We conduct regular security assessments to identify and mitigate risks, continuously improving our security posture. Our Customer Data Platform (CDP) is designed with security at its core, enabling you to manage and utilize customer data securely and efficiently. With WebEngage, your data is safeguarded, allowing you to focus on enhancing customer experiences with complete peace of mind. Our unwavering commitment to data security ensures your business can operate confidently, knowing your data is safe.
Founded in 2011
Here are the controls implemented at WebEngage to ensure compliance, as a part of our security program.
Situational Awareness For Incidents
Notification of changes
Role Based Access Controls
Audit Logging
Data Security
Encrypting Data At Rest
Data Backups
Encryption in Transit
Encryption at Rest
Limit Network Connections
External System Connections
Transmission Confidentiality
Anomalous Behavior
Cloud Provider Requirements
Centralized Collection of Security Event Logs
Conspicuous Link To Privacy Notice
Secure system modification
Approval of Changes
Login Sessions
Malicious Code Protection (Anti-Malware)
Full Device or Container-based Encryption
Endpoint Security Validation
Session Lock
Endpoints Encryption
Mobile Device Management
All WebEngage laptops are centrally managed and inventoried using ABM Controls such as:
Automatic screen lock Strong passwords Patch management Remote Wipe
Disk Encryption
Threat Detection
User laptops are running a centralized EDR client (Jamf). Loki is utilized as SIEM solution which aggregates and ingests all production-related logs.
WebEngage platform is protected by AWS for WAF and zero trust environment services.
Roles & Responsibilities
Competency Screening
Security & Privacy Awareness
Performance Review
Automated Reporting
Incident Reporting Assistance
Risk Framing
Risk Assessment
Fraud
Assigned Cybersecurity & Privacy Responsibilities
Periodic Review & Update of Cybersecurity & Privacy Program
Management Review of Org Chart
Management Review of Risks
Management Review of Third-Party Risks
Data Protection Impact Assessment (DPIA)
Data Protection Officer (DPO)
Testing
Retention of Policies
Chief Privacy Officer (CPO)
Asset Ownership Assignment