Data Security & Privacy

Enterprise-grade security you can trust. Walkingspree follows industry-standard security practices to protect our platform, client data, and member data.

Drata SOC 2 badge Drata badge Drata GDPR monitoring badge

Protecting Client and Member Data

Walkingspree is committed to maintaining a secure and reliable environment across all systems. Walkingspree has received a SOC 2 Type 1 attestation report.

This independent assessment confirms that our internal security controls meet high standards for security, privacy, and data integrity.

We use Drata’s automated platform to continuously monitor our security controls. This gives us real-time visibility and helps ensure strong security and compliance across our systems.

Data Security Protocols and Policy

At Walkingspree, data security is a core part of everything we do.

🔐

Data Privacy

Walkingspree regularly reviews internal data collection, storage, and handling processes in compliance with GDPR, HIPAA, and CCPA.

Walkingspree will only use customer data for terms outlined in the agreement and will not disclose customer data with third parties.

🛡️

Data Encryption

Walkingspree encrypts all data it possesses.

  • Data-at-rest: AES-256 encryption.
  • Data-in-transit: Latest stable SSL protocol.
🗑️

Data Disposal

Upon reaching the end of an agreement or business relationship, Walkingspree will return or dispose of data as instructed.

  • Data may be returned in approved condition.
  • Data may be securely disposed of across equipment and platforms.
🔄

Updates

Walkingspree regularly tracks and replaces hardware that is faulty or non-functional. Software is frequently checked and updated to ensure that it works as intended.

📁

SFTP

Walkingspree uses Secure File Transfer Protocol and checks periodically to ensure that data is secure.

💻

Endpoint Security

Walkingspree uses ESET security solutions to ensure endpoints are managed, up-to-date, and protected from malware, ransomware, web threats, intrusion, phishing, spam, and network attacks.

Security Controls and Response

Walkingspree maintains policies, monitoring, and response plans to help protect client and member data.

🚨

Incident Response

Walkingspree has a program plan that detects and responds immediately to data breaches, including identification, containment, mitigation, remediation, and notification to vendors.

🔑

Access Control

Walkingspree uses need-to-know access controls, unique user identification, dual-factor authentication, and central management.

🧪

Vulnerability Assessment

Walkingspree uses continuous vulnerability scanners to identify and remedy critical network, server, database, and application code vulnerabilities.

🎓

Security Awareness

Walkingspree maintains security awareness across its policies and employees. Employees receive IT security training and sign confidentiality agreements.

☁️

Disaster Recovery & Backup

Walkingspree maintains disaster recovery procedures and performs annual disaster testing. Regular and long-term backups are performed to help protect vendor data.

📋

Security Audits

Walkingspree will respond to vendor audits, answer relevant security questionnaires, and conduct scans and reports of servers, databases, and hardware.

Software Lifecycle

Walkingspree looks for vulnerabilities throughout all stages of the software lifecycle. We maintain strict and secure coding practices throughout development and ensure software undergoes routine security testing.

Security Framework

Walkingspree uses commercial hosting providers to host the SaaS environment. We work with hosting providers that meet industry-standard security requirements and undergo independent assessments such as SOC audits, SSAE 18 audits, and/or ISO certifications.

Learn More About How We Protect Your Data

Review Walkingspree’s privacy policy to learn more about how we protect data and privacy.

Walkingspree Privacy Policy