{"id":3862,"date":"2019-09-06T17:02:08","date_gmt":"2019-09-07T00:02:08","guid":{"rendered":"https:\/\/www.kintone.com\/us\/?page_id=3862"},"modified":"2024-06-10T08:03:29","modified_gmt":"2024-06-10T08:03:29","slug":"security","status":"publish","type":"page","link":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/","title":{"rendered":"Service Level Objective"},"content":{"rendered":"\n<span id=\"top\"><\/span>\n<p class=\"gamma\"><a href=\"#availability\">1. Availability and Reliability<\/a><\/p>\n<p class=\"gamma\"><a href=\"#encryption\">2. Data Encryption (In-Transit and At-Rest)<\/a><\/p>\n<p class=\"gamma\"><a href=\"#csirt\">3. CSIRT<\/a><\/p>\n<p class=\"gamma\"><a href=\"#vulnerability\">4. Vulnerability &amp; Penetration Testing<\/a><\/p>\n<p class=\"gamma\"><a href=\"#access\">5. Product-Based Secure Access Features<\/a><\/p>\n<p class=\"gamma\"><a href=\"#assessment\">6. Security Assessment<\/a><\/p>\n<span id=\"availability\"><\/span>\n<p class=\"gamma\"><a href=\"#compliance\">7. Compliance<\/a><\/p>\n<span id=\"availability\"><\/span>\n\n\n\n<h2 class=\"wp-block-heading\">1.&nbsp; Availability\nand Reliability<\/h2>\n\n\n\n<p>Kintone utilizes Amazon Web Services (AWS) hosting infrastructure. Our\nservices are geo-redundantly replicated across multiple availability zones for\nhigh availability and reliability.<\/p>\n\n\n\n<p>The availability of the main functions of kintone.com can be confirmed on the Status Page (<a href=\"https:\/\/status.kintone.com\/\" target=\"_blank\" rel=\"noreferrer noopener\">https:\/\/status.kintone.com<\/a>).<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">1.2 Operating Hours<\/h3>\n\n\n\n<p>Our platform operates 24 hours a day, 365 days a year (excluding\npre-announced maintenance), with regular backup and redundancy built-in.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">1.3 Scheduled Downtime<\/h3>\n\n\n\n<p>Sometimes we need to perform maintenance to keep <a href=\"https:\/\/www.kintone.com\/us\">kintone.com<\/a>\nworking smoothly. If scheduled downtime is necessary, we\u2019ll give you at least 1\nweek advance notice.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">1.4 Support<\/h3>\n\n\n\n<p>All customers with Eligible Products will receive the following support:<\/p>\n\n\n\n<p>Ticket support: Monitored 9:00 A.M. to 5:00 P.M PST. Monday \u2013 Friday, excluding these <a href=\"https:\/\/blog.kintone.com\/hubfs\/2021%20Company%20Holiday%20Calendar.pdf\" target=\"_blank\" rel=\"noreferrer noopener\">major US Holidays<\/a>. Tickets received outside of business hours will be sent to a mailbox, and necessary action will be taken the next working day.<\/p>\n\n\n\n<p>Contact Support:&nbsp;<a href=\"https:\/\/www.kintone.com\/us\/support\/\" target=\"_blank\" rel=\"noreferrer noopener\">https:\/\/www.kintone.com\/us\/support\/<\/a><\/p>\n\n\n\n<p>Eligible Products are defined as:<\/p>\n\n\n\n<p>1. Paid Kintone.com subscription of $24 or $15\/user\/month<\/p>\n\n\n\n<p>2. Third party services purchased directly from Kintone Corporation<\/p>\n\n\n\n<p>3. Kintone Plug-ins are supported on a best effort basis. Please reference the <a href=\"\/terms-of-use\/#ToU-Plugin\" target=\"_blank\" rel=\"noreferrer noopener\">Kintone Plug-in Terms of Use<\/a><\/p>\n\n\n\n<h3 class=\"wp-block-heading\">1.5 Data Backup<\/h3>\n\n\n\n<p>Data from the last 14-days are stored for system recovery. All files older than 14 days on Kintone rely on Amazon S3&#8217;s internal redundancy mechanism for recovery. This backup process is a countermeasure to unexpected server failure or major disasters and is not intended to serve as a recovery method in the event of data loss due to customer error.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">1.6 Data Deletion<\/h3>\n\n\n\n<p>All data stored within a customer account sub-domain shall be deleted upon the expiry of the retention period we separately determine.<\/p>\n<p><a href=\"#top\">Back to Top<\/a><\/p>\n<span id=\"encryption\"><\/span>\n\n\n\n<h2 class=\"wp-block-heading\">2. Data encryption in transit and at rest<\/h2>\n\n\n\n<p>Customer data stored at kintone.com is encrypted using AWS features. AWS\nRDS, S3, and so on.<\/p>\n\n\n\n<p>All data is encrypted as it moves between our servers and your web browser.<br \/>\nThe Kintone service is offered only with SSL connections, and provides optional\nIP address connectivity restrictions, 2-Factor Authentication.<\/p>\n<p><a href=\"#top\">Back to Top<\/a><\/p>\n<span id=\"csirt\"><\/span>\n\n\n\n<h2 class=\"wp-block-heading\">3. CSIRT<\/h2>\n\n\n\n<p>Cy-SIRT (Cybozu Computer Security Incident Response Team) is an in-house\nexpert security group created to prepare against and handle any Security\nincidents. Cy-SIRT helps create policies to protect against threats and\nresponds rapidly and in real-time to identify, contain, and eradicate threats\nas they arise.<\/p>\n<p><a href=\"#top\">Back to Top<\/a><\/p>\n<span id=\"vulnerability\"><\/span>\n\n\n\n<h2 class=\"wp-block-heading\">4. Vulnerability &amp; Penetration Testing<\/h2>\n\n\n\n<p>Kintone has third-party vulnerability testing auditors such as Vulnerability Defense Laboratory perform vulnerability\/penetration audits on our platform on a semi-annual or as needed (when any major updates occur) basis.\u200b<\/p>\n\n\n\n<p>To see the all the testing reports, click&nbsp;<a href=\"https:\/\/viewer.kintoneapp.com\/public\/831e40273694a9b8bfab2604cc0ee0997aee76d1c47f5288a2749eccdb3aecad#\/\" target=\"_blank\" rel=\"noreferrer noopener\">here<\/a><\/p>\n\n\n\n<p>A penetration test simulates the actions of an external and\/or internal\ncyber attacker that aims to breach the information security of the\norganization.<\/p>\n\n\n\n<p>Found a security problem? <a href=\"https:\/\/www.kintone.com\/us\/vulnerability-reporting\/\">Report it here.<\/a><\/p>\n<p><a href=\"#top\">Back to Top<\/a><\/p>\n<span id=\"access\"><\/span>\n\n\n\n<h2 class=\"wp-block-heading\">5. Product-Based Secure Access Features<\/h2>\n\n\n\n<p>Read the help documentation for details on each feature.  <a href=\"https:\/\/get.kintone.help\/\">https:\/\/get.kintone.help\/<\/a><\/p>\n\n\n\n<h3 class=\"wp-block-heading\">SAML<\/h3>\n\n\n\n<p>Security Assertion Markup Language (SAML) is an XML-based open standard data\nformat that links authentication information across several security domains.\nIf SAML Authentication is used, you can single sign-on into Kintone using the\nuser account that is registered in your company\u2019s Identity Provider (IdP). To\nuse Kintone as the Service Provider (SP) to link with SAML Authentication, an\nIdP that supports SAML 2.0 is needed.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Two-factor authentication<\/h3>\n\n\n\n<p>Two-factor authentication is an added layer of security for your Kintone\naccount. This makes it more difficult for someone else to log in to your\naccount.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">IP address restrictions<\/h3>\n\n\n\n<p>Restricts access from IP addresses that are not listed.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Login and Password Policies<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Password settings<\/h4>\n\n\n\n<p>The following is a list of password settings that can be configured when\nsetting up a Kintone account.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Password Character length<\/li>\n\n\n\n<li>Password Character complexity<\/li>\n\n\n\n<li>Password reuse policy<\/li>\n\n\n\n<li>Password expiration policy<\/li>\n<\/ul>\n\n\n\n<h4 class=\"wp-block-heading\">Logins<\/h4>\n\n\n\n<h5 class=\"wp-block-heading\">Account lockout policy<\/h5>\n\n\n\n<p>Account lockout threshold \u2013 number of incorrect attempts<br>\nAccount lockout duration \u2013 length of time the lockout will occur.<\/p>\n\n\n\n<h5 class=\"wp-block-heading\">Automatic login policy<\/h5>\n\n\n\n<p>Enable\/disable auto login<br>\nEnable auto login duration<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Audit Log<\/h3>\n\n\n\n<p>You can browse and download the audit log of operations such as logins,\nmodifications, file downloads, etc. Custom audit log settings can also be set\nto initiate notification emails.<\/p>\n<p><a href=\"#top\">Back to Top<\/a><\/p>\n<span id=\"assessment\"><\/span>\n\n\n\n<h2 class=\"wp-block-heading\">6. Security Assessment<\/h2>\n\n\n\n<p><a href=\"https:\/\/www.cybergrx.com\/\" target=\"_blank\" rel=\"noreferrer noopener\">CyberGRX<\/a>&nbsp;provides a third-party validated cyber risk assessment of Kintone\u2019s security.&nbsp;<\/p>\n\n\n\n<p>This assessment assesses Kintone\u2019s compliance with industry standards and the security protocols built into our infrastructure.<\/p>\n\n\n\n<p>You can request access to Kintone&#8217;s CyberGRX third-party cyber risk assessment tier 2 report and self-attested responses&nbsp;<a href=\"https:\/\/info.cybergrx.com\/access-kintone-assessment\" target=\"_blank\" rel=\"noreferrer noopener\">here<\/a>.<\/p>\n<span id=\"compliance\"><\/span>\n\n\n\n<h2 class=\"wp-block-heading\">7. Compliance<\/h2>\n\n\n\n<p>Information Security Management System (FISC)<br>\nAs mentioned above, the data centers the <a href=\"http:\/\/Kintone.com\">Kintone.com<\/a>\ncloud is currently operating from comply with The Center for Financial Industry\nInformation Systems (FISC) Facility Safety Standards, considered one of the\nstrictest compliance agencies in Japan.<\/p>\n\n\n\n<p>In fact, the data centers meet Tier 4 specifications, the highest level, for\nmost of the categories in the Data Center Facility Standards as regulated by\nthe Japan Data Center Association.<\/p>\n<p><a href=\"#top\">Back to Top<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>1. Availability and Reliability 2. Data Encryption (In-Transit and At-Rest) 3. CSIRT 4. Vulnerability &amp; Penetration Testing 5. Product-Based Secure Access Features 6. Security Assessment 7. Compliance 1.&nbsp; Availability and Reliability Kintone utilizes Amazon Web Services (AWS) hosting infrastructure. Our services are geo-redundantly replicated across multiple availability zones for high availability and reliability. The availability [&hellip;]<\/p>\n","protected":false},"author":14,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"template-general-styles.php","meta":{"content-type":"","inline_featured_image":false,"footnotes":""},"categories":[],"tags":[],"class_list":["post-3862","page","type-page","status-publish","hentry"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v26.8 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Service Level Objective - Kintone<\/title>\n<meta name=\"description\" content=\"All you need to know about Kintone&#039;s data security and operating environment information is here.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Service Level Objective - Kintone\" \/>\n<meta property=\"og:description\" content=\"All you need to know about Kintone&#039;s data security and operating environment information is here.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/\" \/>\n<meta property=\"og:site_name\" content=\"Kintone\" \/>\n<meta property=\"article:modified_time\" content=\"2024-06-10T08:03:29+00:00\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/\",\"url\":\"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/\",\"name\":\"Service Level Objective - Kintone\",\"isPartOf\":{\"@id\":\"https:\/\/www.kintone.com\/us\/#website\"},\"datePublished\":\"2019-09-07T00:02:08+00:00\",\"dateModified\":\"2024-06-10T08:03:29+00:00\",\"description\":\"All you need to know about Kintone's data security and operating environment information is here.\",\"breadcrumb\":{\"@id\":\"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.kintone.com\/us\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Service Level Objective\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.kintone.com\/us\/#website\",\"url\":\"https:\/\/www.kintone.com\/us\/\",\"name\":\"Kintone\",\"description\":\"Just another kintone global site\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.kintone.com\/us\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Service Level Objective - Kintone","description":"All you need to know about Kintone's data security and operating environment information is here.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/","og_locale":"en_US","og_type":"article","og_title":"Service Level Objective - Kintone","og_description":"All you need to know about Kintone's data security and operating environment information is here.","og_url":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/","og_site_name":"Kintone","article_modified_time":"2024-06-10T08:03:29+00:00","twitter_card":"summary_large_image","twitter_misc":{"Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/","url":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/","name":"Service Level Objective - Kintone","isPartOf":{"@id":"https:\/\/www.kintone.com\/us\/#website"},"datePublished":"2019-09-07T00:02:08+00:00","dateModified":"2024-06-10T08:03:29+00:00","description":"All you need to know about Kintone's data security and operating environment information is here.","breadcrumb":{"@id":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/security\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.kintone.com\/us\/"},{"@type":"ListItem","position":2,"name":"Service Level Objective"}]},{"@type":"WebSite","@id":"https:\/\/www.kintone.com\/us\/#website","url":"https:\/\/www.kintone.com\/us\/","name":"Kintone","description":"Just another kintone global site","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.kintone.com\/us\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"}]}},"acf":{"before_closing_head_tag":"","after_opening_body_tag":"","before_closing_body_tag":"","custom_css":"","enable_header":true,"enable_footer":true,"after_opening_head_tag":""},"_links":{"self":[{"href":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/wp-json\/wp\/v2\/pages\/3862","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/wp-json\/wp\/v2\/users\/14"}],"replies":[{"embeddable":true,"href":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/wp-json\/wp\/v2\/comments?post=3862"}],"version-history":[{"count":1,"href":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/wp-json\/wp\/v2\/pages\/3862\/revisions"}],"predecessor-version":[{"id":10018,"href":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/wp-json\/wp\/v2\/pages\/3862\/revisions\/10018"}],"wp:attachment":[{"href":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/wp-json\/wp\/v2\/media?parent=3862"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/wp-json\/wp\/v2\/categories?post=3862"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/d2mzbk2zjjwglz.cloudfront.net\/us\/wp-json\/wp\/v2\/tags?post=3862"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}