Security 

We take our responsibilities as custodians of your data very seriously.  All our services are bespoke however we treat security and privacy to the highest level and the security levels are the same across all.


Oracle

Our systems are built on Oracle cloud based systems as they provide the highest level of security. 

Oracle data centres and all of Oracle's cloud based systems are ISO 27001 accredited and are fully data encrypted.

Click here, to see Oracles White Paper for "Infrastructure and Platform Cloud Services Security" 


Oracle SaaS Compliance
Oracle has been engaging with external assessment entities and independent auditors to meet a broad set of international and industry-specific compliance standards for SaaS deployments in Oracle Public Cloud (OPC) such as ISO 27001, SOC1, SOC2, PCI DSS, HIPAA/HITECH, and FedRAMP to add to its already impressive portfolio for Oracle Managed (closed or private) Cloud and On-premise SaaS deployments.
— https://cloud.oracle.com/saas_compliance

The Oracle security on thier platform conforms to U.S military and U.S government security protocols at all levels.


Garmin

Prior to ZS Wellness connection is made the security of data 

Garmin’s Responsible Disclosure Policy - "Data security is a priority at Garmin. If you are a security researcher or Garmin customer and think you’ve found a security issue or vulnerability, we appreciate your help in disclosing it to us in a responsible manner. Please don’t access or modify data without permission, and act in good faith not to degrade the performance of our products, apps and websites." 

 

For more information on the Garmin security please see here.


ZS Wellness

We take our responsibilities as custodians of your data very seriously.  All our services are bespoke however we treat security and privacy to the highest level and the security levels are the same across all.

All data transfer is done to the highest security standard and maintenance security from server to server after you grant permission for the ZS Wellness solution to collect your data.

 

1) When a user uploads their latest data to the Garmin cloud, Garmin will send an encrypted message to the ZSWellness connector, this is called a "ping"

2) On receiving the "ping" from Garmin, the ZSWellness connector will exchange encoded security details with Garmin and issue a request to download the new data

3) The ZSWellness connector will then securely download the data (the data does not contain any information that can personally identify an individual) and process it according to the client's needs (e.g. it can be summarised)

4) Finally, the ZSWellness connector then securely uploads the data to the Oracle Cloud where it is then available for analysis and reporting


Updated 9th May 2018