Create your own awesome maps

Even on the go

with our free apps for iPhone, iPad and Android

Get Started

Already have an account?
Log In

MindMeister - Securing a Global Cloud App by Mind Map: MindMeister - 
Securing a Global Cloud App
0.0 stars - reviews range from 0 to 5

MindMeister - Securing a Global Cloud App

Securing against attacks

Rails built-in stuff

SQL injection

XSS (Ajax)

CSFR (authenticity token)

PCI DSS

Approved since 2012

Scans, every 3 months, XSS, SQL Injection, Versions of used software, Known threats

May 7, 2014, Teamsecur3: XSS vulnerability detected!

Securing user data

256bit SSL

for paying users

Encrypted backups

geographically separated location

Daily backup, weekly copy, 500 GB

Securing user access

OAuth 2.0

Latest technology for authorization and authentication in cross-domain scenarios

External Logins, Facebook, Twitter, Google

External Services, Google Drive, Evernote

Two-factor authentication

via TOTP

Securing admin access

Access to admin UI

only with 2-factor token

Access to servers

IP v6 only

with IP filter and ssh

Heartbleed

Reaction time 5 hours after public knowledge

Updated openssl on all servers

New certificates (and keys)

Nice: internal svn server used older version that was not affected

Blog Post

NSA

Seriously affected Q3 revenue

-20 %

Euro zone is still sceptical

Assure Users

Homepage

Signup Page

About MindMeister

Marketing your Security

Security Page

http://www.mindmeister.com/security

Security Flyer

for business customers