Security, Privacy & Compliance at Interactio
Security, Privacy & Compliance at Interactio
Privacy and security are at the heart of what we do at Interactio. That’s why our remote multilingual meetings platform is protected by multiple security features complemented by constant product testing and updates. This way, you can rest assured: your data is always protected.
12+
Partners certifications
3
Industry based compliance
How does Interactio ensure the security of your meetings?
SAML 2.0 authentication
With Security Assertion Markup Language method, only authorized people can access your meetings.
Individual meeting links
Individual meeting links are generated for participants and interpreters to join meetings securely.
Role-based access control
Based on the set permissions and privileges, Interactio grants users with access based on their specific role.
Participant Screening Application
In specific high-stakes situations, a manual inspection of participants verifying their identity is run using the dedicated app.
Waiting room & In-meeting controls
Waiting room enables organizers to place participants in a separate environment before they join an actual meeting. In-room controls enable moderators to control who joins the meeting and what permissions they have.
Encrypted Data at Rest (DAR)
All the data that we store is safely encrypted, ensuring that no one can gain access to your information.
Compliance certifications and attestations
ISO/IEC 27001:2013
Information Security Management System (ISMS)
Learn more
.png)
GDPR
General Data Protection Regulation
How does Interactio approach your data?
Data retention
We always allow clients to choose how long they want the event data to be stored.
Supervised data deletion
We ensure safe data deletion process supported by the Department of Defence standards.
Transparent client communication
We always inform clients when the event’s data is about to be deleted and provide an opportunity to retrieve it if they wish to.
Servers located in Europe
By partnering with AWS, we ensure that all of our servers located in Europe are ISO-certified. Our network guarantees regionally replicated backup and failover for a reliable backup system.
Interactio Incident Status Page
FAQ
[Where are the servers located?\
\
Processor
Types of data accessed
Purpose for the data access
Data Location
PURPOSE
FURTHER INFORMATION
Digital Ocean
Personal data contained in communications customers send or receive remote simultaneous interpretation (RSI) platform “Interactio”
To provide media streaming functionality in remote simultaneous interpretation (RSI) platform “Interactio”
Frankfurt, Germany, European Union
OVH Hosting
Personal data contained in communications customers send or receive remote simultaneous interpretation (RSI) platform “Interactio”
To provide media streaming functionality in remote simultaneous interpretation (RSI) platform “Interactio”
Paris, France, European Union
Amazon web services
Personal data contained in communications customers send or receive remote simultaneous interpretation (RSI) platform “Interactio”
To provide service functionality in remote simultaneous interpretation (RSI) platform “Interactio”
Frankfurt, Germany, European Union
Processor: Digital Ocean
To provide media streaming functionality in remote simultaneous interpretation (RSI) platform “Interactio”
Personal data contained in communications customers send or receive remote simultaneous interpretation (RSI) platform “Interactio”
Data Location: Frankfurt, Germany, European union
Processor: OVH Hosting.
Personal data contained in communications customers send or receive remote simultaneous interpretation (RSI) platform “Interactio”
To provide media streaming functionality in remote simultaneous interpretation (RSI) platform “Interactio”
Data Location: Paris, France, European Union.
Processor: Amazon web services
Personal data contained in communications customers send or receive remote simultaneous interpretation (RSI) platform “Interactio”
To provide service functionality in remote simultaneous interpretation (RSI) platform “Interactio”
Data Location: Frankfurt, Germany, European union
[Is the client’s personal data encrypted?\
\
Yes, the client’s personal data is well encrypted. Below you can find the encryption process:
- For connecting to infrastructure services we use a master key which is stored in Key Management Service on AWS.
- Traffic encryption is ensured by generating a 1024-bit RSA key pair. We encrypt the data on the client’s side before sending it to the Interactio RSI platform, then decrypt received data from storage, and verify that the decrypted data is the same as the original.
- For extra security, we use the Server-Side Encryption (SSE) option to encrypt data stored at rest.
- Key validation authority: Sectigo RSA Domain Validation Secure Server CA.
[Do clients own their personal data?\
\
Yes, the customer owns their personal data during the event. If according to the contract, a client wants the data to be saved, then the data is stored for the stated period after the event.
[Does Interactio own their client’s personal data?\
\
Customer Data does not belong to Interactio and is not collected except if stated otherwise in the contract.
[Does Interactio decide what to do with their client’s personal data?\
\
At Interactio, we follow strict GDPR and ISO 27001 rules regarding client personal data. We have a clear process on how information and data should be managed, who is responsible, and in what conditions. Regular security and privacy training as well as the whole privacy framework ensure that rules and procedures are known to every single person at Interactio.
[For how long does Interactio store their client’s personal data when an event is over?\
\
The time period is determined in the client’s contract. However, if the conditions are not discussed, the data is stored for 6 months after data collection.
[How can clients access their personal data?\
\
After the event, the customer administrator or event organizer can download data related to the event. All data is stored in the encrypted Amazon S3 repository or encrypted Aurora database and is available for as long as the contract terms are stipulated.
If you are a security researcher please use the sec@interactio.io to notify Interactio of any security vulnerabilities.
Read more about security at Interactio
Interactio certifications and how they serve you
Security
Oct 20, 2022
Security requirements for RSI providers
RSI industry
Security
Dec 21, 2021
.jpeg)
What is zoombombing and how to prevent it?
RSI industry
Event insights
Security
Apr 19, 2022