Organisational security

The practices behind device security, passwords, authentication and network access.

Documented below is a top-level overview of the device and organisational security steps we take.

Further protective steps can be made and we are happy to have devices audited by a third party if required.

Devices Overview

  • iMac Pros
    • 1 Password
    • Nord VPN
    • Intego Mac Internet Security X9
    • Apple FileVault Encryption
  • MacBook Pros
    • Touch ID
    • 1 Password
    • Nord VPN with auto-connect
    • Intego Mac Internet Security X9
    • Apple FileVault Encryption
    • Nord VPN with auto-connect and application kill switch
      • Applications closed on loss of VPN connection:
        • iTerm | Terminal | Hyper
        • Chrome | Firefox | Safari | Brave
        • Spark | Mail
        • Slack | Discord | Teams | Zoom
  • iPad Pros
    • 1 Password
    • Face ID
    • Nord VPN with auto-connect
    • Authy
  • iPhone 11 Max Pro
    • Face ID
    • Nord VPN with auto-connect
    • FileVault Encryption
    • 1 Password
    • Authy

Password Manager

  • 1Password is installed on all devices
  • All passwords are stored in a business only 1Password account. All passwords are generated to the most secure level the system allows. (Based on character length restrictions)

Two Factor Authentication

  • 2FA is always used where available
  • Authy is used in place of 1Passwords solution

Virtual Private Network

Nord VPN is used for all connections on untrusted WiFI, and connecting to client networks and servers.

All mobile devices (including laptops), will auto-connect via a VPN when connecting to WiFI networks.

Nord’s kill-switch feature is used on mobile devices to disable system-wide internet access, and to terminate critical applications on desktop machines.

Antivirus

Intego’s Mac Internet Security X9 is installed on all macOS devices.

Operating System

All devices have auto-updates enabled. The latest version of iOS, iPadOS, and macOS are installed. macOS Catalina is currently being reviewed for compatibility.


Comments and recommendations

Any recommendations or improvements are always welcome; security practice is ever evolving and we’re always looking to improve.

More information

Further information can be found on our Infrastructure Security overiew page.