VCC Live® client software security features

Reading Time: 2 minutes

VCC Live®’s client software includes a number of mandatory and customisable security features which are intended to avoid external attacks, as well as internal attacks and misuse on the client’s side.

 

Audio and data communication

Full encryption of sound and the accompanying communication protocols, using the technology listed below, is possible in VCC Live®, guaranteeing that every conversation-related event which occurs between VCC Live®’s client software and the central system is encrypted:

  • SIP-TLS
  • sRTP

During the use of the software, network data traffic is encrypted with the following industry-standard technologies:

  • Secure Socket Layer (SSL)
  • Hypertext Transfer Protocol Secure (HTTPS)

VCC Live® following the stricter industry-standard recommendations and techniques like:

  • TLS v1.2
  • Current safe cipher suites
  • Current safe hash algorithms
  • File integrity monitoring
  • ISSG-ISSAF4 G and OSSTMM5 C/8 methodology

 

Database and data separation

In VCC Live®’s infrastructure every client has their own separate database, for both uploaded data and other data, for example statistics. Due to our strict firewall policies and incorporated software barriers, clients are not able to access other client databases.

A backup is made of all client-related data (e.g. their individual database) so as to avoid data loss. Servers used to store information are placed in an environment which is appropriately supervised and has restricted access (for more details on this, see ‘Server hosting, DRP/Virtualization’).

Client audio files are stored on a storage file system which is physically stored on several different servers. Even if any server were to be completely destroyed, the sound files would still be accessible and unharmed.

Sound files are stored for a period of 30 days (with the possibility of longer storage if requested), during which time they can be downloaded as required. Downloaded files can also be deleted from the VCC Live® system when archive files are created, before they would be automatically deleted.

 

Adjustable security features in the client software

VCC Live®’s client software provides the client with further opportunities to increase the level of security:

  • customisable IP addresses and ranges for access
  • customisable parameters for the rights system
  • multi-level password policy for individual rights

Relevant regulations:

  • Risk Assessment Policy
  • Communication Security Policy
  • Change Management Policy
  • Testing Process and Procedures Policy
  • Software Development Policy
  • Incident Management Policy

 

Privacy Settings Center

Necessary

Necessary cookies are essential in order to navigate around a website and use its basic features. You must accept these cookies as the website cannot function properly without them.

__cfduid,debug,PHPSESSID

Marketing

Marketing cookies are used to track visitors across websites and deliver advertisements that are more relevant and engaging to you.

__atuvc,__atuvs,_at.cww,_hjIncludedInSample,_hjRecordingEnabled,ads/user-lists/#,at-lojson-cache-#,at-rand,bt2,di2,IDE,lidc,loc,NID,ouid,r/collect,rc::a,rc::b,s,test_cookie,uid,uvc,vc,xtc

Statistics

Statistic cookies collect data to help us understand how visitors use our websites and are used to improve the user experience. These cookies don’t collect personal information and cannot identify visitors.

_ceg.s,_ceg.u,_ga,_gat,_gid

Other

Other cookies are those cookies that do not fall into the categories above. These cookies are in the process of being classified.

loglevel,socketCluster.authToken,u,webchatClientId,webchatOpen