Security is fundamental to everything we do at Santra. We implement industry-leading security measures to protect your data and communications.
1. Infrastructure Security
- Data Centers: Hosted in EU-based, SOC 2 Type II certified data centers.
- Network Security: Enterprise-grade firewalls, DDoS protection, and intrusion detection systems.
- Redundancy: Multiple availability zones with automatic failover.
- Uptime: 99.9% SLA with real-time monitoring.
2. Encryption
- In Transit: All data encrypted with TLS 1.2/1.3.
- At Rest: AES-256 encryption for stored data.
- VoIP: SRTP encryption for voice communications.
- Passwords: Bcrypt hashing with salting.
3. Access Control
- Role-based access control (RBAC)
- Two-factor authentication (2FA) available
- Session management with automatic timeout
- IP whitelisting for admin access
- Audit logs for all administrative actions
4. Monitoring & Incident Response
- 24/7 automated security monitoring
- Real-time alerting for suspicious activities
- Documented incident response procedures
- Regular security assessments and penetration testing
5. Compliance
- GDPR: Full compliance with EU data protection regulations.
- Data Residency: EU data stays in EU data centers.
- Regular Audits: Annual third-party security audits.
6. Security Reporting
If you discover a security vulnerability, please report it responsibly:
Email: security@santra.cc
We appreciate your help in keeping Santra secure and will acknowledge valid reports within 48 hours.