Chat now with support
Chat with Support

Disaster Recovery for Identity Current - for Active Directory Security Guide

FIPS 140-2 Compliance

Disaster Recovery for Identity for Active Directory cryptographic usage is based on Azure FIPS 140-2 compliant cryptographic functions.

More information:

SDLC and SDL

The On Demand team follows a strict Quality Assurance cycle.

  • Access to source control and build systems is protected by domain security, meaning that only employees on Quest’s corporate network have access to these systems. Therefore, should an On Demand developer leave the company, this individual will no longer be able to access On Demand systems.
  • All code is versioned in source control.
  • All product code is reviewed by another developer before check in.

In addition, the On Demand Development team follows a managed Security Development Lifecycle (SDL) which includes:

  • MS-SDL best practices
  • Threat modeling.
  • OWASP guidelines.
  • Regularly scheduled static code analysis is performed on regular basis.
  • Regularly scheduled vulnerability scanning is performed on regular basis.
  • Segregated Development, Pre-Production, and Production environments. Customer data is not used in Development and Pre-Production environments.

On Demand developers go through the same set of hiring processes and background checks as other Quest employees.

Third Party Assessments and Certifications

Penetration Testing

On Demand has undergone a third-party security assessment and penetration testing yearly since 2017. The assessment includes but is not limited to:

  • Manual penetration testing.
  • Static code analysis with Third Party tools to identify security flaws.

A summary of the results is available upon request. No OWASP Top 10 critical or high-risk issues have been identified.

Related Documents
Disaster Recovery for Identity - Current
for Active Directory Release Notes
for Active Directory Security Guide
for Active Directory User Guide
Release Notes
Security Guide
User Guide
Showing 1 to 6 of 6 rows

The document was helpful.

Select Rating

I easily found the information I needed.

Select Rating