Security

Improve your security with powerful protection

At Clarizen, we consider security to be a business imperative and a critical component to successfully managing your project online. That is why we made it an integral part of our project management software's architecture.

  • State of the art technology, combined with strict procedures protects your privacy and keeps user information, documents and data confidential.
  • Clarizen's project management software architecture is designed to safeguard against security breaches – no matter the source (hacking, spying, phishing).
  • We guarantee our service availability and reliability, ensuring no service or data loss; the Clarizen project management service is accessible anywhere, at anytime.
Clarizen security with powerful protection

SOC 2 Compliant

Clarizen has completed its Service Organization Control ("SOC") 2 Type 1 audit, performed by auditors Ernst & Young, on the company's hosted services and applications as it relates to the SOC 2 Trust Service Principles of security, availability, processing integrity, confidentiality and privacy of the system.

Achieving SOC 2 compliance conveys trust and assurance to users that Clarizen has an effective control system to mitigate operational and compliance risks. It also demonstrates that at Clarizen, security is considered to be a business imperative and a critical component of the company's processes.

Facilities & Disaster Recovery

Clarizen's server farms are hosted at a Tier 1 location in California.
The facility is SAS 70 Type II certified. To protect our customers' data, ensure service reliability and availability Clarizen utilizes two mirrored data centers. The entire data is replicated in real time to a disaster recovery and backup site, hosted on a secured facility on the East Coast of the United States.

Infrastructure

Clarizen ensures all communications going to and coming from its servers are secure.

  • Clarizen utilizes a multi-tiered network security infrastructure to prevent security violations. We employ data encryption to ensure your data is kept private and secure. Multiple firewalls and network scanners further secure all access to our servers and prevent hacking. Clarizen regularly performs penetration testing and deploys the latest security updates to guarantee our system is always protected against new threats.
  • Application Firewalls further protect the system by preventing any malicious activity within the application. Clarizen uses complex algorithms to make sure that the application is not manipulated in any way that may cause harm to your data.
  • Additional mechanisms such as anti-virus and application monitoring are put in place to protect against malicious hacking attempts. Clarizen's project management service is constantly monitored to make sure that any out of the ordinary activities or failures are immediately reported. Several alert mechanisms are in place to escalate any such occurrences.
  • Clarizen also undergoes ongoing penetration testing audits by multiple credible third party security testing firms.
  • Backup is performed in a multi layered fashion having both local and off site backups running at all times. The offsite backup is kept at Clarizen's disaster recovery site.

Protecting Your Organization's Data

The security and protection of your organization's data is paramount.

  • Clarizen ensures that information is kept secure and private by preventing unauthorized users to access your data.
  • Clarizen security mechanisms ensure your project data is accessible only to registered users belonging to your organization.

User Authorization and Roles

  • Each user has a unique username and password that must be entered at the start of each Clarizen session. All passwords are stored in encrypted MD-5 hash format.
  • Clarizen secures user IDs, passwords and other user information such that they are never jeopardized.
  • Clarizen's role and authorization mechanisms ensure that data access and user actions can be limited by each user's role in each project.
  • Project managers have the capability to assign roles in their projects to specific users and grant them permissions as required.

Clarizen Security