Aerros Security

Aerostrat employs a multi-faceted approach to keep your data confidential and secure.


Trust Aerostrat to secure your data and meet your organization’s compliance requirements. Our security program centers around our Information Security Management System. This security system is made up of over 300 controls to ensure our customer data is confidential, properly governed, and always available.

Security Scorecard

Aerostrat maintains an A rating on SecurityScorecard. SecurityScorecard monitors our external vulnerabilities

Azure Security Center

Aerostrat uses Azure Security Center and Defender to constantly internally monitor our devices and configurations.

Advanced Threat Detection

All servers and devices at Aerostrat use Azure ATP to provide advanced threat protection and automatically shut down ports and devices at risk.

Encryption

All data is 265 bit encrypted at rest and in transit. Aerostrat also utilizes Azure Information Protection to encrypt all other data.

Annual Penetration Test

Each year, Aerostrat has a external vendor perform an pen test to search for vulnerabilities in our software and services.

Source Code Control

All source code is reviewed, tested, and scanned for vulnerabilities before being merged into Aerostrat’s code base.

Training

Aerostrat employees undergo annual security policy training, quarterly security awareness training, and continuous social engineering training

Mobile Device Security

All devices at Aerostrat are managed to ensure they are encrypted, continuously monitored, and abide by Aerostrat mobile device policy

Business Continuity

All customer data and Aerostrat services are geo-redundant and are annually tested via a disaster recovery simulation

Compliance Certifications & Attestations


Please contact Aerostrat for a copy of our certificates and/or reports

ISO/IEC 27001:2013
ISO/IEC 27001:2013

SOC 2 Type II
SOC 2 Type II All Trust Service Principles