Security

Serena SaaS Operations

Serena’s data center operations utilize certified best practices for monitoring, change control, and incident management. The data center is SAS70 certified and has completed the TypeII audit.

Network Security

  • Fully-managed, enterprise-class firewall systems
  • 24x7x365 traffic monitoring
  • Human response to alerts within five minutes of any alert activity
  • Intrusion Detection System (IDS) providing defense in depth strategy
  • Signature, protocol, and anomaly-based inspection methods employed
  • Third-party IDS monitoring provides an additional layer of defense against outside threats
  • Distributed security architecture to enable immediate detection and suppression of distributed denial of service (DDoS) attacks
  • Regular external network scans and penetration tests to assess network security and identify vulnerabilities
  • Access to all back-end systems limited to encrypted protocols
  • Extensive logging of all network and system access attempts to alert for suspicious activity

Agile On Demand Security

We take your security seriously. We’ve put many safeguards in place to ensure your application security, including:

  • 128-bit SSL certificates
  • Login via HTTPS/SSL
  • Session variables for tracking logged-in users
  • Passwords stored hashed with NIST approved algorithms
  • Data access through stored procedures
  • Cookies maintain session state and do not store important data