Security
Your data security is a priority to us as it is central to our company mission. We build Labstep with global security standards in mind and provide full transparency on our security policies.
Helping University students, faculty or institute members, and independent researchers
Explore three pricing options to support the needs of R&D, pharma, chemistry and research teams
Your data security is a priority to us as it is central to our company mission. We build Labstep with global security standards in mind and provide full transparency on our security policies.
Labstep has a continuous working relationship with Amazon Web Services (AWS), allowing for operating and hosting on the most secure and reliable cloud environment. This cooperation allows Labstep to build on a secure system, quickly detecting, iterating and resolving any issues. With Labstep’s active collaboration with AWS, we are responsible for the server maintenance on the platform, rolling out latest bug fixes and patches without requiring any contribution from your side.
We use AWS virtual networking to establish connections with limited access protected from the public access. Our production systems are only available to approved networks and are always protected from the public internet, ensuring whitelisted traffic by applying multilayered firewalls which are continuously reassessed for security.
Labstep always encrypts any transferred, stored, or processed customer data according to the best standards. Labstep has both Encryption in Transit and full encryption at REST for S3 buckets, RDS database and ElasticSearch index. Our TLS/SSL connections ensure reliable encryption of all data thatenters Labstep’s servers from the Internet. We use AES-256 encryption to encrypt all the data beingstored in Labstep.
We utilise the most advanced data backup technologies to minimise the risk of customer data loss. Labstep creates raw files for all images and other data uploaded by our users and stores them in an extremely durable Amazon S3 storage service that offers industry-leading data availability, security and performance. Amazon S3 is a storage service with unmatched durability and support, used by the world’s leading organisations.
Our structured data is stored to the MySQL database adapted to synchronise to a backup. If the database failure occurs, backup can be connected with almost no downtime or data loss. The MySQL database is backed up daily and stored, allowing for a quick and accurate data restoration. We alsostore our weekly backups for 1 year and store our data in multiple geo-locations to ensure excellent data durability.
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.
Description of the value
Description of the value
Description of the value
Description of the value
Description of the value
Description of the value
Description of the value
Description of the value
Description of the value
Labstep carries out annual security audits to ensure data transparency and integrity are maintainedto the highest standards. Third-party security professionals engage in annual grey-box penetrationtests to ensure up-to-date security.
We facilitate your management system by allowing our clients to use their own existing authentication policies, making management, provisioning, or suspending users easy. Labstep can integrate with our users’ existing SAML or Google SSO setups, so that users can sign in using a single login, also integrating their existing two-factor authentication.
Two-factor authentification
Secure your accounts with two-factor authentication to ensure you are the only person that can login,even if your password is compromised.
IP Whitelisting: controlling access to trusted users
Use IP whitelisting as an extra layer of security to ensure your data can only be accessed from specific approved IP addresses.
Labstep strictly follows the regulatory compliance by FDA 21 CFR Part 11 through carrying out thorough audit trails, electronic signatures and electronic records support. The security practices used by Labstep comply with FIPS 200 and ISO27001. Additionally, Labstep can make you compliant with Good Laboratory Practice guidelines and Good Manufacturing Guidelines.
OWASP top 10
Labstep has adopted this documentation and mitigates these risks. The OWASP Top 10 is a standard awareness document for developers and web application security. It represents a broad consensus about the most critical security risks to web applications.
Labstep prides itself on the excellent team of scientists and engineers who have precisely designed Labstep based on the world’s best industry and technology practices. Our dedicated team of engineers constantly works on enhancing the current security systems, as well as evaluating the risks and trends in data security.
Information on our frameworks and hosting, end-to-end encryption and other measures to keep your data safe.