Security Compliance
Security Compliance Mission
Enable IllumiDesk sales by providing customers information and assurance about our information security program and remove security as a barrier to adoption by our customers.
Implement a comprehensive compliance program at IllumiDesk to document and formalize our information security program through independent evaluation.
Reduce and document IllumiDesk risk as it relates to information security.
Roadmap
Our internal roadmap shows our current and planned projects and the currently defined components of work for each.
Note: This link (and other links on this page) will only display if you are logged in as a IllumiDesk team-member and will not be visible to the public.
Active security compliance work includes:
Implement and remediate a prioritized set of security controls needed for PCI, Sarbanes–Oxley (SOX), and SOC2.
Prepare for the SOC2 Type 2 external audit set to kick off around the end of 2020
Meet our SOX-readiness needs relating to our security controls
Meet our PCI compliance needs as a level-4 merchant
Perform ongoing risk assessments of IllumiDesk service and organization
Manage security needs relating to the IllumiDesk procurement process and perform third-party security reviews as needed
Facilitate quarterly access reviews for IllumiDesk as a product and company
Business Continuity Plan testing
IllumiDesk's Control Framework (ICF)
IllumiDesk has adopted an umbrella control framework that provides compliance with a number of industry compliance requirements and best practices. For information about how we developed this framework and a list of all of our security controls, please see the security controls handbook page.
Last updated