Information Security

MediaLab maintains a robust, industry-leading information security program that ensures the integrity and confidentiality of your data. Our team is dedicated to meeting or exceeding federal requirements, employing best practices, and adhering to the highest standards of data protection.

Ease of Deployment and Security with Software-as-a-Service

MediaLab's platform is provided as software-as-a-service, not installed on your organization's local network. That means no servers to deploy, no software to install or maintain, and no IT involvement from your organization. Your access is configured instantly, with the full protections of MediaLab's information security program.

Service Availability

MediaLab is committed to providing a platform that is available 24/7/365, always responsive, and never overloaded. We use cloud-based architecture, which provides redundancy, geo-replication, and scalability to meet user needs.
Updates to the MediaLab platform do not impact availability. There's no action you need to take to get the latest updates and no downtime.

Secure Data Centers

MediaLab's platform is hosted in world-class data centers managed by Microsoft and also hosting some of the world's leading companies and web sites. This provides physical and administrative security over all of your data. MediaLab employs web application firewalls to monitor and block malicious traffic. Data in MediaLab is stored and processed in US-based data centers, never outside the country.
MediaLab's data centers adhere to security controls for ISO 27001, ISO 27018, SOC 1, SOC 2, SOC3, FedRAMP, HITRUST, MTCS, IRAP, and ENS.

Encryption

All website traffic and data in motion is secured and encrypted with HTTPS / SSL. Data at rest is encrypted with FIPS 140-2 compliant encryption methods, such as AES 256, to maintain privacy and confidentiality.

Risk Management

MediaLab maintains a HIPAA and HITECH compliant risk management program, including employee training, background checks, annual risk assessment. We deploy physical, administrative, and technical safeguards to keep your data safe.

Role-Based Access

All MediaLab solutions use role-based access, allowing you to grant permissions to users based on role, job description, duties, and more. Permissions take effect immediately, with no delay or downtime. Users are denied access to any resource for which they do not have specific granted permissions.

Audit Logs

MediaLab automatically maintains full audit logs of all views and changes to data, maintained indefinitely. You can access audit logs from inside the platform at any time to review employee access and make sure any access is appropriate.

Validation and Verification

MediaLab maintains a comprehensive validation and verification program for our platform and updates. All changes are communicated to users in advance, along with steps necessary to validate the correct operation of the system. MediaLab conducts annual and as-needed validation on the entire platform.

Portability

You can get all of your data, anytime. MediaLab provides comprehensive backups delivered on a weekly or monthly schedule, or you can request them from the platform any time. Backups contain all of your information in easy-to-use, non-proprietary formats, including original documents, spreadsheets, and copies of courses and competency assessments.