{"id":43330,"date":"2020-09-11T03:50:26","date_gmt":"2020-09-11T03:50:26","guid":{"rendered":"https:\/\/onesaas.local\/legal\/messagemedia-security-statement\/"},"modified":"2024-03-27T20:14:47","modified_gmt":"2024-03-27T20:14:47","slug":"messagemedia-security-statement","status":"publish","type":"legal","link":"https:\/\/messagemedia.com\/uk\/legal\/messagemedia-security-statement\/","title":{"rendered":"MessageMedia Security Statement"},"content":{"rendered":"<h2>MessageMedia Security Statement<\/h2>\n<p><strong>Compliance and standards<\/strong><\/p>\n<p>MessageMedia hosts our <strong>core web portal platform<\/strong> on infrastructure provided by Amazon Web Services (<strong>AWS<\/strong>). We build on Amazon to ensure our infrastructure is compliant with a number of requirements, as AWS is accredited with the following assurance programs\/standards: including ISO 27001, HIPAA and SOC2. A full list of compliance standards is available in the <a href=\"http:\/\/d0.awsstatic.com\/whitepapers\/compliance\/AWS_Risk_and_Compliance_Whitepaper.pdf\">AWS Security and Compliance Whitepaper<\/a>.<\/p>\n<p>MessageMedia hosts other <strong>customer data<\/strong> in online platforms that are compliant with other relevant standards, with ISO27001 for all platforms and with PCI-DSS accreditation for our billing platforms.<\/p>\n<p>Other security controls for MessageMedia Platform and Support Services are assessed and implemented as part of our <strong>Security Program<\/strong> which is aligned with ISO27001.<\/p>\n<p><strong>Reliability and performance<\/strong><\/p>\n<ul>\n<li>Highly available and redundant platform running in AWS in active-active configuration across three availability zones<\/li>\n<li>Low latency messaging API offering sub 100 millisecond response times and 99.95% uptime<\/li>\n<li>Messaging gateway offering processing of 95% of messages within 2 seconds<\/li>\n<li>Redundant connections to major telecommunication networks (in AU) at all layers of the stack (application, data centre, geography, providers)<\/li>\n<li>A highly scalable platform allowing for large high volume sending<\/li>\n<li>Message prioritisation capabilities to ensure high priority messages are delivered even when large volume sending is occurring<\/li>\n<\/ul>\n<p><strong>Security<\/strong><\/p>\n<p><strong>Data In Transit<\/strong><\/p>\n<p>Data connections between customers and MessageMedia can be protected with TLS 1.2 using AES ciphers. This encryption, when configured correctly by customers, is equivalent in strength to the recommendations provided by the Australian Government Information Security Manual and aligns with the stringent requirements of a number of other government and industry standards.<\/p>\n<p>Customer data transfers within MessageMedia is protected by segregated networks or Virtual Private Networks. Where MessageMedia Group (MMG) access is required, this is strictly limited only to necessary staff.<\/p>\n<p><strong>Data Encryption<\/strong><\/p>\n<p><strong>Sensitive Data<\/strong>, including <strong>Customer Data<\/strong>, is encrypted at REST using AES Encryption.<\/p>\n<p><strong>Network protection<\/strong><\/p>\n<p>MessageMedia networks are segregated from normal corporate networks at the internet either physically, using Virtual Private Networks or cloud-based networks. Access to these networks is secured using firewalls and network configuration to limit access to what is required. Where MMG access is required, this is limited only to necessary staff.<\/p>\n<p><strong>Security logging, monitoring &amp; response<\/strong><\/p>\n<p>Security events and other logs from our platforms are recorded and monitored in accordance with industry practices.<\/p>\n<p>Security Incidents are managed according to our internal Security Incident Response plan, which is compliant with Australian Privacy Act requirements, including in connection with the mandatory data breach notification scheme.<\/p>\n<p><strong>Access Control<\/strong><\/p>\n<p>Customer access (authentication and authorisation) provides discrete control over accounts who have access to customer accounts, including<\/p>\n<ul>\n<li>Individual Customer Accounts for each user to improve authentication<\/li>\n<li>The ability to manage your own API keys for programmatic connectivity in our MessageMedia Web Portal<\/li>\n<\/ul>\n<p>For MessageMedia staff access, we use:<\/p>\n<ul>\n<li>A single corporate staff directory supported role-based access control<\/li>\n<li>Multi-factor authentication (MFA) for all staff access, including re-authentication for Privileged User Access.<\/li>\n<\/ul>\n<p><strong>Data Residency<\/strong><\/p>\n<p>Please see <a href=\"https:\/\/messagemedia.com\/uk\/legal\/privacy-policy\/\">Section 10 of our Privacy Policy<\/a>.<\/p>\n<p><strong>Integrations<\/strong><\/p>\n<p><strong>Ecosystems<\/strong><\/p>\n<p>MessageMedia builds its integrations with other ecosystems (including Shopify, HubSpot and NetSuite integrations) securely. MessageMedia cannot secure the customer installations of these ecosystems or configurations of these ecosystems, including access control, auditing of ecosystem functions, infrastructure security or other compliance requirements. Where we have control of integration configuration, we will ensure that Data in Transit is encrypted appropriately according to the guidance above.<\/p>\n<p><strong>This Security Statement applies to users of our MessageMedia web portal and REST API. Different security protocols apply to MessageMedia Manager web portal and users of our SOAP API.<\/strong><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"template":"single-legal-sidebar.php","meta":{"_acf_changed":false,"popular":false,"coming_soon":false,"link":""},"class_list":["post-43330","legal","type-legal","status-publish","hentry"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Security Statement | MessageMedia United Kingdom<\/title>\n<meta name=\"description\" content=\"Explore the Sinch MessageMedia Security Statement, detailing our commitment to data protection and security. United Kingdom\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/messagemedia.com\/uk\/legal\/messagemedia-security-statement\/\" \/>\n<meta property=\"og:locale\" content=\"en_GB\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Security Statement | MessageMedia\" \/>\n<meta property=\"og:description\" content=\"Explore the Sinch MessageMedia Security Statement, detailing our commitment to data protection and security.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/messagemedia.com\/uk\/legal\/messagemedia-security-statement\/\" \/>\n<meta property=\"og:site_name\" content=\"Sinch MessageMedia\" \/>\n<meta property=\"article:modified_time\" content=\"2024-03-27T20:14:47+00:00\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/messagemedia.com\\\/uk\\\/legal\\\/messagemedia-security-statement\\\/\",\"url\":\"https:\\\/\\\/messagemedia.com\\\/uk\\\/legal\\\/messagemedia-security-statement\\\/\",\"name\":\"Security Statement | MessageMedia\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/messagemedia.com\\\/au\\\/#website\"},\"datePublished\":\"2020-09-11T03:50:26+00:00\",\"dateModified\":\"2024-03-27T20:14:47+00:00\",\"description\":\"Explore the Sinch MessageMedia Security Statement, detailing our commitment to data protection and security.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/messagemedia.com\\\/uk\\\/legal\\\/messagemedia-security-statement\\\/#breadcrumb\"},\"inLanguage\":\"en-GB\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/messagemedia.com\\\/uk\\\/legal\\\/messagemedia-security-statement\\\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/messagemedia.com\\\/uk\\\/legal\\\/messagemedia-security-statement\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/messagemedia.com\\\/uk\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Legal\",\"item\":\"https:\\\/\\\/messagemedia.com\\\/us\\\/legal\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"MessageMedia Security Statement\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/messagemedia.com\\\/au\\\/#website\",\"url\":\"https:\\\/\\\/messagemedia.com\\\/au\\\/\",\"name\":\"Sinch MessageMedia\",\"description\":\"Business SMS &amp; Messaging Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/messagemedia.com\\\/au\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/messagemedia.com\\\/au\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-GB\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/messagemedia.com\\\/au\\\/#organization\",\"name\":\"Sinch MessageMedia\",\"url\":\"https:\\\/\\\/messagemedia.com\\\/au\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-GB\",\"@id\":\"https:\\\/\\\/messagemedia.com\\\/au\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/messagemedia.com\\\/wp-content\\\/uploads\\\/2024\\\/03\\\/logo-mm-sinch.svg\",\"contentUrl\":\"https:\\\/\\\/messagemedia.com\\\/wp-content\\\/uploads\\\/2024\\\/03\\\/logo-mm-sinch.svg\",\"width\":1,\"height\":1,\"caption\":\"Sinch MessageMedia\"},\"image\":{\"@id\":\"https:\\\/\\\/messagemedia.com\\\/au\\\/#\\\/schema\\\/logo\\\/image\\\/\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Security Statement | MessageMedia United Kingdom","description":"Explore the Sinch MessageMedia Security Statement, detailing our commitment to data protection and security. United Kingdom","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/messagemedia.com\/uk\/legal\/messagemedia-security-statement\/","og_locale":"en_GB","og_type":"article","og_title":"Security Statement | MessageMedia","og_description":"Explore the Sinch MessageMedia Security Statement, detailing our commitment to data protection and security.","og_url":"https:\/\/messagemedia.com\/uk\/legal\/messagemedia-security-statement\/","og_site_name":"Sinch MessageMedia","article_modified_time":"2024-03-27T20:14:47+00:00","twitter_card":"summary_large_image","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/messagemedia.com\/uk\/legal\/messagemedia-security-statement\/","url":"https:\/\/messagemedia.com\/uk\/legal\/messagemedia-security-statement\/","name":"Security Statement | MessageMedia","isPartOf":{"@id":"https:\/\/messagemedia.com\/au\/#website"},"datePublished":"2020-09-11T03:50:26+00:00","dateModified":"2024-03-27T20:14:47+00:00","description":"Explore the Sinch MessageMedia Security Statement, detailing our commitment to data protection and security.","breadcrumb":{"@id":"https:\/\/messagemedia.com\/uk\/legal\/messagemedia-security-statement\/#breadcrumb"},"inLanguage":"en-GB","potentialAction":[{"@type":"ReadAction","target":["https:\/\/messagemedia.com\/uk\/legal\/messagemedia-security-statement\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/messagemedia.com\/uk\/legal\/messagemedia-security-statement\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/messagemedia.com\/uk\/"},{"@type":"ListItem","position":2,"name":"Legal","item":"https:\/\/messagemedia.com\/us\/legal\/"},{"@type":"ListItem","position":3,"name":"MessageMedia Security Statement"}]},{"@type":"WebSite","@id":"https:\/\/messagemedia.com\/au\/#website","url":"https:\/\/messagemedia.com\/au\/","name":"Sinch MessageMedia","description":"Business SMS &amp; Messaging Platform","publisher":{"@id":"https:\/\/messagemedia.com\/au\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/messagemedia.com\/au\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-GB"},{"@type":"Organization","@id":"https:\/\/messagemedia.com\/au\/#organization","name":"Sinch MessageMedia","url":"https:\/\/messagemedia.com\/au\/","logo":{"@type":"ImageObject","inLanguage":"en-GB","@id":"https:\/\/messagemedia.com\/au\/#\/schema\/logo\/image\/","url":"https:\/\/messagemedia.com\/wp-content\/uploads\/2024\/03\/logo-mm-sinch.svg","contentUrl":"https:\/\/messagemedia.com\/wp-content\/uploads\/2024\/03\/logo-mm-sinch.svg","width":1,"height":1,"caption":"Sinch MessageMedia"},"image":{"@id":"https:\/\/messagemedia.com\/au\/#\/schema\/logo\/image\/"}}]}},"_links":{"self":[{"href":"https:\/\/messagemedia.com\/uk\/wp-json\/wp\/v2\/legal\/43330","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/messagemedia.com\/uk\/wp-json\/wp\/v2\/legal"}],"about":[{"href":"https:\/\/messagemedia.com\/uk\/wp-json\/wp\/v2\/types\/legal"}],"wp:attachment":[{"href":"https:\/\/messagemedia.com\/uk\/wp-json\/wp\/v2\/media?parent=43330"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}