Home > Blog
Read Time — 3 minutes
We have a history of committing to cloud security from our board to individual contributors. We have the right technology and processes to keep your data secure.
We are dedicated to employing best-in-class practices to keep your data secure; this includes security discussions in daily stand-ups, weekly touch points, monthly and quarterly business reviews, and board meetings. We run an Enterprise Risk Management (ERM) Program; our Information Security team performs an annual risk assessment that incorporates the likelihood and impact of several critical risk categories.
We do this because our mission is to see small businesses succeed. We don’t want our customers to be part of the 60 percent that close due to being hacked. Therefore, we take on that burden for you and invest in quality and best-in-class technology to secure your data.
Rest assured that our team of experts safely backs up your data. We handle your data with top-notch backup infrastructure. Systems are backed up locally to all-flash drive storage to ensure data can be restored quickly. This data is then sent offset and retailed for long periods to support ECI’s BCP and DR initiatives.
Your customers’ controlled unclassified information (CUI) is in good hands with us. We store and transmit CUI using compliant encryption and provide role-based authentication and permissions. ECI’s products use best practices for encryption both at rest and in transit. Transport encryption includes the latest version of TLS. ECI also enforces strict account provisioning and management processes following the principles of least privileged access. Accounts are provisioned through a documented onboarding process and well-defined role-based access. Privileged accounts or accounts with access to customer data require a business need and specific authorization, so only authorized users can access specified files and folders.
Our manufacturing products are hosted on Amazon GovCloud or Azure Government, secure data centers physically located in the US, and staffed by US persons.
ECI’s team closely monitors changes in Department of Defense policy concerning CUI. CMMC is a complicated topic, and while the compliance process can be long and experienced, with ECI as your partner, ERP compliance doesn’t have to be. From the ERP side, we’ve worked with a third-party assessor and invested in the best cybersecurity technology so that you can check that part off your list.
Whether you have an IT staff member or not, we have the expertise and the workforce to handle your government compliance needs. Your data is managed by a company employing the best processes by a knowledgeable data team. We will be your partners in keeping your CUI safe and sharing responsibility with you so that you are successful with CMMC compliance.
If you enjoyed reading this post, check out these articles: