
4 réponses
Hi Salman,
Salesforce.com
Oracle Database has been around, in various forms, since the late 1970s. Like Microsoft, they have long been a target of hackers. They have used that experience to build one of the most popular, and secure, database systems available.
Also boasting up-times in excess of 99.9%, it’s no surprise that salesforce.com chooses to run on Oracle Database. As of June, 2013, Salesforce.com entered into a deal to standardize on Oracle platforms, meaning they’ll be sticking with this system for the foreseeable future.
Global Datacenter Backups
Salesforce.com utilizes many of the same practices and principles as Microsoft when it comes to securing customer data, also earning them an ISO-27001 certification. Each datacenter is mirrored with another global datacenter, providing a real-time backup of all information stored on the servers.
Certified Transmissions
Connections to the salesforce.com service require a minimum 128-bit VeriSign SSL certification and 2048-bit RSA public keys. This secure connection prevents the interception and interpretation of communications between Salesforce.com and users.
End User Protection
Salesforce.com employs a multi-tiered approach to user security. Access permissions, user roles, session timeouts, and more are easily customizable. In the event that a device is lost or stolen, it will quickly become useless, as access from an untrusted network requires a pre-issued security token that only authorized users can access. These, and many other features, ensure that your CRM data is only accessible by those employees who have a legitimate need for it.
Lessons Learned
In 1999, salesforce.com introduced the world to cloud-based CRM, and in the 14 years they’ve been in business, there has only been one case of security breach. In 2007, a salesforce.com employee fell victimto a targeted phishing scam and was tricked into providing admin credentials to the perpetrators.
After the incident, salesforce.com led the industry in tightening security measures for cloud-based software and introduced two-factor authentication. In the more than six years since they were hacked, salesforce.com hasn’t suffered another breach.
https://www.crmswitch.com/crm-security/crm-data-security/
That speaks for itself: Phishing was the only way in, and Salesforce has covered this issue with two step authetification.
Hope this helps! If it does, please mark as best answer :-)
Best,
Till