“It’s time to consider transforming informal and flawed data governance efforts into formal data governance programs ... Supplementing management with governance will make [management's] jobs easier, will help satisfy advanced compliance requirements, and will help protect the integrity of your corporate data, which is what SOX is all about.”
- Gwen Thomas, z/Journal
News and Events
GeoBooks On Demand applications and services assure utmost security and integrity.
Secure 128-bit data encryption
All users connect to GeoBooks On Demand services using secure 128-bit encryption - the same technology used for on-line banking and credit card transactions.
GeoBooks On Demand holds all passwords in hacker-proof encrypted form.
Access protection and password security
GeoBooks On Demand permanently records all login attempts, counts the number of times someone repeatedly tries to access your ERP system, and automatically locks-out accounts after too many unsuccessful login attempts. Unattended sessions will automatically time-out after a period of inactivity.
The system also requires users to change their passwords at periodic intervals, prevents password re-use, and enforces password format rules. GeoBooks On Demand requires users to re-confirm their passwords when changing them. Users can request to re-set their password by email notification.
Role-based access control
You assign each user to a role within your organization. Each role, in turn, grants permission to perform the appropriate functions and denies permission to perform others. This allows you to implement Segregation of Duties (SOD) policies that govern who is allowed to perform each step of every business process. It also determines what each user's menu navigation options are, information visibility, and whether or not the user can alter visible information.
Intrusion-proof session management
GeoBooks On Demand uses session "cookies" that reside in memory only for the duration of a browser session. These cookies are not written to disk, so as soon as the user closes their browser - or the session times out - the session cookies cease to exist.
The session ID is a unique, randomly generated 32-character code that requires a user to login if the code does not match the system's current list of active sessions.
Advanced VPD technology
Our GeoBooks VPD Service delivers all GeoBooks On Demand ERP capabilities from a Geoprise data center. We use advanced Virtual Private Database (VPD) technology to maintain secure separation of our customers' data. VPD technology originated with U.S. Department of Defense (DoD) security requirements for separation of data by sensitivity level (SECRET, CONFIDENTIAL, UNCLASSIFIED) and implements security that is transparent yet cannot be subverted. Even though, in reality, our customers share the same resources, each of them appears to run their own database and is never aware that other customers are using the same system.
Option to host your own exclusive database
With the GeoBooks Exclusive Service, your data resides in a MySQL database installed on your own server (or server cluster), securely behind your own firewall, while the GeoBooks On Demand ERP applications are hosted at a Geoprise data center. This option allows you to keep complete control of your own data, while enjoying the economies of scale that come from using Software as a Service.
As with the GeoBooks VPD Service, none of our customers is ever aware that other customers are using the same application server. The only data situated at the Geoprise data center is the information needed to host your service, and data temporarily in memory for tasks currently being performed by each of your users (we never store this data permanently). All other data is stored permanently on your premises, behind your firewall.
Either way, you own your business and financial information
Our privacy policy explains this in full detail. We never disclose your information to anyone (other than our authorized third-party hosting service providers, and then on a "need-to-know" basis only) unless we are compelled by governing law to do so, and we operate on the presumption that we do not have your permission to disclose any of your data that you maintain at any of our data centers using any GeoBooks On Demand service. Our third-party services providers are contractually bound to the same restrictions and we regularly audit them to ensure that they comply fully with these restrictions at all times.
