Security Policy
At Cinna Mon Consulting, the security of your information and that of your partners is a top priority. We implement organizational, technical, and procedural safeguards across our consulting services, Webinar-as-a-Service, and CinnaLab.io.
Data Security Practices
All data in transit is protected using TLS (HTTPS). Sensitive information stored within our systems and databases is encrypted at rest.
User accounts are protected by strong authentication, and access to sensitive data is restricted to authorized personnel only. Within CinnaLab.io, role-specific permissions ensure least-privilege data sharing.
Infrastructure & Application Security
CinnaLab.io is hosted on Heroku, a secure cloud platform with enterprise-grade compliance (ISO 27001, SOC 2, GDPR, etc.). Our systems undergo monitoring for suspicious activities and unauthorized access, and core systems receive regular updates to address vulnerabilities.
Operational Security
Personnel complete security awareness training and follow data handling protocols. Access follows least-privilege principles based on job requirements. All staff and contractors sign confidentiality agreements.
Compliance
We align with European data protection laws and maintain compliant data processing agreements with providers including Zoom, MailerLite, HubSpot, and Salesforce.
Incident Response
We commit to notifying affected parties promptly during security incidents and implementing remediation measures.
Your Role in Security
Please use strong passwords, maintain credential confidentiality, and report suspicious activity to contact@cinnamonconsulting.tech.