Rock Solid Enterprise-Level Security
Workday is a trusted partner for large enterprises wanting to take advantage of the many benefits of Software as a Service (SaaS). From the physical security of our data center operations to network and application level-security to ensuring the safeguard of your sensitive data, Workday's infrastructure, policies and procedures are world class.
With Workday, you can:
- Have confidence that your data is protected by world class physical, network, application, and data-level security
- Benefit from the control and flexibility of a configurable, granular, and auditable
user permissions model
- Gain peace of mind that Workday adheres to the highest standards when
it comes to security. Workday continually passes the toughest 3rd party security
audits and certifications in the industry, including ISO 27001, SAS70 Type II, and Safe Harbor.
Security WebinarWatch Now
Physical Security
- State-of-the-art data center and backup facilities
- Highly restricted access with 24x7 monitoring and audit
- Backup and disaster recovery with regular testing of procedures to ensure integrity of customer data
Communications and Network-Level Security
- Access permitted only over secure connections including Secure Socket Layer (SSL) version 3 or Transport Layer Security (TLS)
- Perimeter-level defense and network intrusion prevention
- Regular 3rd party network vulnerability and penetration testing
Application-Level Security
- Authentication of all user and web services requests
- Support for SAML Single Sign On (SSO)
- Support for delegated authentication
- Granular customer-defined access control rights and permissions
Data Security
- No direct database access allowed. All access requests routed through the business logic.
- All attribute values in the database and backups uniquely encrypted in the database using AES 256-bit encryption – the only solution on the market capable of this approach.
Comprehensive Auditing
- Full audit of user and web services authentication, authorization, and access
- Non-destructive updates
- Complete audit trail reporting in support of governance and compliance
The Workday data centers employ state-of-the-art measures to maintain physical security and uninterrupted service for Workday customers.
In this demo, we discuss the security, reliability, and auditability inherent in Workday's enterprise business services.