We have designed BugZero solutions to minimize risk while maximizing value to IT teams, by accessing only the following information:
BugZero has a wide selection of supported vendors which enable you to evaluate and prevent vendor operational bug outages
Integrating active products & versions from your CMDB allows BugZero to identify relevant operational risks that could cause an outage and compatible upgrade options to automate bug scrubbing
We are committed to uptime and transparency with industry leading uptime commitments
Data is backed up within the dedicated tenant to ensure business continuity in the event of a failure
View the status of our service and recent maintenance windows here
Release security testing
New code is analyzed via Static Application Security Testing (SAST) both pre- and post-deployment
Continuous penetration testing
Running applications are subject to continuous penetration testing through modern Dynamic Application Security Testing (DAST) tools
Vendor security reviews
All vendors go through an extensive review of security controls
Data isolation
Customer data is stored in dedicated AWS accounts, ensuring no shared infrastructure, databases or networks between customers
Data integrity
Data is encrypted with industry-standard cipher suites, at rest and in transit
Data privacy
Serverless, individual tenant architecture guarantees world-class data privacy and near limitless scale
Endpoint security
Devices have full-disk encryption and are protected by endpoint security agents providing NGAV and EDR/EPP capabilities, with 24/7/365 monitoring
Access control
We follow the model of least privilege, only assigning resources and services necessary access and employ comprehensive MFA
Thorough background checks
All BugZero employees who have access to customer data have gone through a thorough background check
Strict adherence to ISO 27001 information security best practices
Annual SOC 2 reporting on security of our cloud solutions
App built by certified ServiceNow architects
Scalable, enterprise grade AWS serverless design, by certified AWS Architects