We Want to Hear From You! What Do You Want to See on the Community? Tell us here!

Forum Discussion

JAC59's avatar
JAC59
Explorer | Level 3
3 years ago
Solved

Security Measures Practiced By Dropbox

My very small company uses Dropbox for our work files storage.  We have been asked by a new customer IT audit to provide evidence of "our" penetration testing (how often done, provide a redacted report if we're using a 3rd party provider for our data storage)  and vulnerability management practices.  I am trying to find anything specific to these topics that Dropbox does on a daily or continuous basis, so I can reply to the survey.  We don't do these things for ourselves and have told the new customer that we use a 3rd party provider to store data.  Thanks for any help!

4 Replies

Replies have been turned off for this discussion
  • JAC59's avatar
    JAC59
    Explorer | Level 3
    3 years ago

    Hi, Rich,

     

    Thanks very much for your help!

     

    I was hoping that there might be some more technically-detailed statement available from Dropbox such as "we do penetration testing of all of our server. sites in accordance with XYZ standard every X days (or continuously, or whatever).  Identified vulnerabilities are ranked as to their risk and resolved as soon as possible".

     

    What you provided is probably as good as it's going to get for a small user like me.  I'm very happy with Dropbox and have been a customer for a long time, and having to answer a question like this for a customer's IT survey is pretty unusual. 

     

    Thanks again!

  • Rich's avatar
    Rich
    Icon for Super User II rankSuper User II
    3 years ago

    JAC59 wrote:

    ... having to answer a question like this for a customer's IT survey is pretty unusual.


    Get used to it! We get requests like that all the time from our customers, especially for government work (DFARS/NIST is a PITA!).

  • JAC59's avatar
    JAC59
    Explorer | Level 3
    3 years ago

    Haha, yes indeed.

     

    Thanks again for your help!

About Security and Permissions

Start a discussion in the Dropbox Community forum to get help with your account security and permissions. Find support from Community members.

Need More Support

The Dropbox Community team is active from Monday to Friday. We try to respond to you as soon as we can, usually within 2 hours.

If you need more help you can view your support options (expected response time for an email or ticket is 24 hours), or contact us on X or Facebook.

For more info on available support options for your Dropbox plan, see this article.

If you found the answer to your question in this Community thread, please 'like' the post to say thanks and to let us know it was useful!