BlogPartners

Security & Privacy at NetRise

As a leader in Software Supply Chain Security, our own security and compliance is foundational to our customer’s success.

NetRise Platform

Governance

NetRise’s internal security and privacy experts establish policies and controls, monitor compliance with controls, and routinely undertake independent assessments of our security and compliance. Our policies and controls are founded on the following principles:

  • Access Control

    Access is granted on the basis of least privilege and administrative or role based access to the NetRise platform can be secured with MFA.

  • Implementation

    Security controls are implemented and layered in alignment with a defense-in-depth approach.

  • Consistency

    Security controls are applied consistently to all areas of the organization.

  • Iteration

    The implementation of controls is an iterative process, seeking to continuously improve effectiveness and auditability while decreasing friction.

Security & Compliance

NetRise maintains compliance with all applicable government regulations and appropriate frameworks, including SOC 2 Type II.

For more details on our internal security practices, please review our Terms of Service or reach out to your NetRise account manager.

For more information on how collected data is handled, please see our Privacy Policy.

SOC 2 Type II

Data Protection

All stored customer data is encrypted and segmented using GCS (Google Cloud Storage) best practices. Row-level encryption is also applied to sensitive collections and tables. Data is encrypted even before it reaches the database, ensuring neither physical access nor logical access to the database is sufficient to interpret sensitive information.

Stored data encryption
NetRise Platform dashboard

Product & Enterprise Security

Responsible Disclosure

Want to report an issue? Contact us at security@netrise.io.