The Trisotech Cloud infrastructure is hosted in Quebec, Canada in the OVH secured data center under the Canadian Federal privacy law as well as Quebec provincial privacy act.

Data Center Certifications

Trisotech guarantees the data center infrastructure where customer data is stored complies with International standards and is certified for ISO/IEC 27001:2013 and externally audited according to SOC 2/3 type II and ISAE 3402 type II.

ISO 27001:2013

Trisotech guarantees that its data center provider complies with the ISO 27001:2013 norm. This norm certifies that the required security measures and management procedures are in place.

Download the Certificate

Operational Control

Trisotech guarantees that its data center provider is externally audited regarding the design and operating effectiveness of its controls relevant to security.

Download the Section I of the SOC 2 Type II report

Download the Section I and II of the SOC 3 Type II report

Download the Section I of the ISAE 3402 Type II report

Communication

All communication between our customers and Trisotech data center is encrypted using an SSL certificate through protocol such as Secure HTTP (https). We also have internal monitoring and control in place to follow the best practices regarding protocols, key exchange and cipher algorithms.

User Authentication and Management

The Trisotech solutions rely on external User Authentication. The following authentication and Single Sign On (SSO) technologies are available:

  • Azure Active Directory (Cloud/On Premise)
  • SAML2 (Cloud/On Premise)
  • LDAP (On Premise)
  • Active Directory (On Premise)

Trisotech also provides, free of charge, an independent user authentication mechanism called “Trisotech Account”. These accounts guarantee the email ownership and provide password management and resets. All Trisotech Accounts password are encrypted using secured 1-way hash encryption.

Top of the page