SecurusVault
Security Policy

Contractual Obligations SECURUSVAULT

Based on the corresponding service version, SECURUSVAULT provides the customer with soft- and possibly hardware components. SECURUSVAULT is obliged to store the electronic data sent from the customer location on specially protected servers at the Company Highly secure datacenters. SECURUSVAULT warrants the basic serviceability of the delivered soft- and hardware components during the entire duration of this service contract and is responsible for periodic updates (without notice). SECURUSVAULT ensures the continuous disposition for emergency data recovery procedures in accordance with separate terms, conditions and possibly prices.

Encryption of Customer Data

The service comprises an encryption of the customer data as protection from unauthorized access of SECURUSVAULT and third parties. The level of encryption is:

* 256-bit AES for the storage of the customer data at SECURUSVAULT datacenters (all service versions)
* 128-bit and RSA-1024 bit SSL for the transfer to SECURUSVAULT datacenters (all service versions)

Owner and solely responsible for all SECURUSVAULT access data is the customer. According to the SECURUSVAULT internal security policy, SECURUSVAULT personnel has no possibility to autonomously recover any lost access data (e.g. password…) and therefore suggests properly storing all access information in form of a hard copy at two secure and from each other independent locations (e.g. with a trustee, bank and / or attorney). Further, a periodic function control of all access information is recommended.

Data History and Retrieval

All service versions offer a retrieval of all versions of the successfully stored data with SECURUSVAULT. The length of resource history that can be stored by SECURUSVAULT is limited only by the available storage space

Liability, warranty

SECURUSVAULT warrants secure storage and safekeeping of the customer’s data, and service availability of 99.7% per year (excluding the internet connection at the customer location). Based on the fact that SECURUSVAULT has no access to the infrastructure of the customer (e.g. the customer’s personal computers and devices) and the condition that all customer data is encrypted – even for SECURUSVAULT, the monitoring and alert possibilities of SECURUSVAULT are strongly restricted. The responsibility for a successful data protection is therefore explicitly with the customer.

Applicable law and court of jurisdiction

This legal relationship is subject to Swiss law. The place of jurisdiction is the appropriate court in Geneva (Switzerland).

Further information

We gladly refer to our website for further information www.SecurusVault.com and are certainly always available at support@securusvault.com for any further questions you might have