Fpweb.net is committed to providing Cloud Solutions that comply with the mandates, standards and acts set forth to regulate and protect the industries that host with us.
Have questions about your specific compliances?
Ask for a free trial
We are ready to take on the burden of your IT compliance
Many of these standards require audits and reviews from outside parties to ensure the
privacy and safety of your data. Regardless of your industry, you can be sure that Fpweb.net
upholds the highest standards and fulfills all requirements necessary for you to confidently
host your SharePoint and Sitecore cloud solution with us.
Fpweb.net's Tier III Data Center Standard means that all our hosting facilities comply with the Uptime Institute data center standards.
Data center standards determine the level of reliability you can expect from your hosting facility as developed and measured by the Uptime Institute, the industry specialist. Tier III builds upon the redundancy and reliability of the first two tiers and adds a level of resilience known as N+1 redundancy that ensures system availability in the case of component failure.
Why is the Tier III Data Center Standard important?
SSAE 16 SOC I, is an internationally recognized auditing standard developed by the American Institute of Certified Public Accountants (AICPA).
A SSAE 16 SOC I audit is widely recognized because it represents that a service or outsourcing organization has been through an in-depth audit of their control activities, which generally include controls over information technology and related processes. As one of the highest industry accepted auditing standards for service companies, SSAE 16 SOC I certification provides customers with guaranteed security and reliability for their systems.
Why is SSAE 16 SOC I Important to You?
The Sarbanes-Oxley Act outlines strict governance and control standards for public companies & public accounting firms and provides additional oversight to corporate accounting.
Also known as SOX, Sarbox or the Public Company Accounting and Investor Protection Act of 2002, is a compliance standard required of all corporations, public companies or public accounting firms. Fpweb.net provides a way to reduce the infrastructure and management cost of SOX compliance by hosting our solutions in a SOX 404 compliant environment.
Why is Sarbanes Oxley Compliance important?
Fpweb.net's Data Centers follow standards set by NIST (National Institute of Standards and Technology), a US Government agency within the Commerce Department.
"The National Institute of Standards and Technology (NIST) is a non-regulatory federal agency under the Department of Commerce. It is the National Measurement Institute for the United States. The NIST's mission is to support and develop measurement standards and technology in order to improve efficiency, facilitate trade, and enhance the quality of life."
www.professionalequipment.com
Why is NIST Compliance important?
The Payment Card Industry Security Standards Council outlines the national standard taken to combat credit card fraud and increase the amount of controls placed on any cardholder data.
The PCI Security Standards Council was founded by American Express, Discover Financial Services, JCB International, MasterCard, and Visa Inc. to increase security around payment account data while also raising education and awareness of the PCI Security Standards. PCI compliance protects transaction data and follows security standards set for account data protection.
Why is PCI Compliance important?
The ISO 9000 family of standards represents an international consensus on good quality management practices related to quality management systems and connected supporting standards.
The ISO 9000 family addresses quality management, specifically what is done to fulfill customer quality and applicable regulatory requirements, while enhancing customer satisfaction and achieving continual performance improvement. ISO 9001:2008 is the standard that provides a set of standardized requirements for a quality management system, regardless of what the user organization does, its size, or whether it is in the private, or public sector.
IPv6 anticipates the eventual problem of IPv4 running out of internet addresses. IPv6 uses 128-bit addresses and has 7.9×1028 times more addresses IPv4, which uses 32-bit addresses.
Developed by the Internet Engineering Task Force, the latest Internet Protocol version 6 promises to solve and accommodate the issue of consumers utilizing more and more devices to access the internet. While IPv4 only allowed 4,294,967,296 unique addresses worldwide (or less than one address per person alive in 2012), IPv6 allows for 4.8×1028 addresses per person.
The Health Insurance Portability and Accountability Act (HIPAA) outlines the national standards for security and privacy of Healthcare information.
Fpweb.net's HIPAA-compliant data center facilities provide secure cloud hosting for electronic healthcare records & patient data. Specifically for hosting and records management, HIPAA outlines the compliance requirements for health care electronic transactions and identifiers for providers, health plans, and employers.
Part 11 of the Code of Federal Regulations is directed at the Food and Drug Administration (FDA) regarding specific guidelines on electronic records and signatures.
FDA Part 11 compliance applies to any organization that must meet the requirements and compliance policies set forth by the FDA for electronic records management. Typically involves pharmaceutical industry, drug makers, biotech industry, medical device manufacturers, CROs and more.
Fpweb.net is an active member of Cloud Security Alliance (CSA). As a member Fpweb.net shares cloud security knowledge with the organization and its members for faster threat intelligence synergy. Fpweb.net also uses the Cloud Controls Matrix (CCM) as a standard framework for its cloud security customers.
The Cloud Security Alliance is the world’s leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment. CSA harnesses the subject matter expertise of industry practitioners, associations, governments, and its corporate and individual members to offer cloud security-specific research, education, certification, events and products. CSA’s activities, knowledge and extensive network benefit the entire community impacted by cloud—from providers and customers, to governments, entrepreneurs and the assurance industry—and provide a forum through which diverse parties can work together to create and maintain a trusted cloud ecosystem.
The EU-U.S. Privacy Shield Framework was designed by the U.S. Department of Commerce and European Commission to provide companies on both sides of the Atlantic with a mechanism to comply with EU data protection requirements when transferring personal data from the European Union to the United States in support of transatlantic commerce.
The Privacy Shield Framework replaced the US-EU Safe Harbor Framework in 2016. BBB EU Privacy Shield offers compliance assistance and independent dispute resolution services to U.S. companies adhering to the Framework. The Framework also provides a set of robust and enforceable protections for the personal data of EU individuals. It provides transparency regarding how participating companies use personal data, strong U.S. government oversight, and increased cooperation with EU data protection authorities (DPAs).
The Privacy Shield Framework offers EU individuals access to multiple avenues to address any concerns regarding participants’ compliance with the Framework. The Framework ensures a continuing level of protection consistent with Privacy Shield Principles when personal data collected under the Framework is transferred to third parties. The Framework also makes it easier for EU individuals to understand and exercise their rights.
Fpweb.net Privacy Policy
The International Traffic in Arms Regulations (ITAR) is a U.S. government export regulation that covers the manufacture, sales, and distribution of defense and
space-related articles and services on the United States Munitions List (USML). Administered by the U.S. State Department Directorate of Defense Trade Controls,
the legislation is designed to control access to specific types of technology and associated data.
The law primarily applies to defense contractors that manufacture and/or export products on the USML, but all companies in the supply chain for such products must
register to obtain the appropriate import or export license and meet the ITAR requirements. The USML includes items that are specifically designed, developed, configured,
adapted or modified for a military application. However, the law also covers applicable data and information about the items on the list.
ITAR stipulates that regulated technical data – regardless of its form – may be used solely by U.S. persons employed by the U.S. government or a U.S. company. A U.S. person is defined as a U.S. citizen, permanent resident, political asylee, government agency, or corporation. Furthermore, all U.S. companies that manufacture, export, or handle data for items on the USML are required to register with the government and obtain prior authorization to export USML items to a foreign person or government. They must also obtain a specific license exemption to export the data to a U.S. person located outside the U.S., such as to share it with a U.S. employee stationed in another country.
There are several types of export authorizations:
Technical data pertaining to items on the USML is considered to be regulated. Data that is covered under ITAR generally pertains to the design, development, production, manufacture, assembly, operation, repair, testing, maintenance, or modification of defense articles. The law also regulates software that includes system functional design, logic flow, algorithms, application programs, operating systems and support software for design, implementation, test operation, diagnostics, and repair.
The Federal Risk and Authorization Management Program (FedRAMP) is a government-wide program that provides a standardized approach to security assessment, authorization, and continuous monitoring for cloud products and services. The FedRAMP program has also established a Joint Accreditation Board (JAB) consisting of Chief Information Officers from DoD, DHS, and GSA.
FedRAMP benefits
A member of our Sales Team will respond promptly. If you’d like to talk right now, please call 866.780.4678 (toll free US & Canada) -or- 1+636.600.8960 (worldwide).