Quadient ICA Trust Center

Content

Disclaimer

This page is relevant to Quadient Intelligent Communication Automation (ICA) from the product compliance perspective. Other parts of Quadient, like Mail Related Solutions (MRS) or Parcel Locker Solutions (PLS) might adhere to different standards. Please reach out to your Account Manager if you are interested in those matters relevant to MRS, PLS or Quadient internal Digital Organization.

Security, Privacy and Compliance Information

Our primary objective in creating this page is to provide an open and transparent overview of Quadient ICA solutions Compliance governance program. We believe in fostering a culture of clarity, where all stakeholders, including customers and partners, can readily access and understand our principles, guidelines, and practices. By sharing this information, our goal is to promote trust, accountability, and informed decision-making as we work to continuously improve our program.

Quadient emphasizes compliance with multiple certifications, frameworks, and legal requirements such as ISO27001, ISO9001, HITRUST, PCI-DSS, SOC2, NIST, GDPR, HIPAA, or CCPA. Compliance levels are regularly reviewed by internal auditors and independent external auditors to provide that all controls are in place, working as intended and in line with both Quadient and its customers’ expectations.

Quadient employs a dedicated team responsible for managing the Quadient ICA Compliance, which includes:

  • Information Security Management System (ISMS), including Risk Management, Incident Management, Business Continuity, Disaster Recovery etc.
  • Privacy Information Management System (PIMS)
  • Quality Management System (QMS)
  • Environmental, Social and Governance (ESG), including Environmental Management System (EMS) and Corporate Social Responsibility (CSR)
  • Occupational Health and Safety (OHAS)
  • Fire Safety (FS)

Various roles such as Security and Compliance Managers, Data Protection Officers, Cyber Security Analysts, Penetration Testers, Quality Engineers, and Environmental Managers are dedicated to manage or support above mentioned management systems. These professionals hold relevant certifications and their education is continually improved.

The links below contain more information about the comprehensive security and governance program implemented by Quadient ICA, including security awareness training for employees, acceptable use policies, access control, availability and continuity measures, asset management, backups, business continuity planning, change management, cyber insurance, disaster recovery, encryption, hardening measures, HR security practices, incident management, internal and external audits, logging, monitoring, network security, data loss prevention, password management, and more.

If you have any additional questions, you can reach out to us at privacyteam (at) quadient.com for privacy relevant questions or security (at) quadient.com for security relevant questions.

Finally, our Quadient University can provide you a wide list of topics relevant to Quadient ICA products.

Quadient ICA Solutions

The following Quadient ICA solutions are provided as SaaS for which Quadient uses Microsoft Azure (Azure) and Amazon Web Services (AWS):

Customer Experience Management (CXM)

Referring to Inspire solutions. For enterprises who wish to create exceptional customer experiences, we provide omnichannel software solutions and expertise that deliver compliant and meaningful customer interactions. This includes Inspire Evolve, Inspire Flex, Inspire Journey and Digital Boost.

Intelligent Documentation Automation (IDA)

Referring to Impress solutions. For businesses who want to streamline document production processes and departmental workflows, we provide digital solutions that help automate communications and accelerate cash flow. This includes Impress Automate, Impress Distribute and Impress Invoice.

Account Receivables (AR)

Referring to “Quadient AR, by YayPay”. Automate Accounts Receivable to simplify the collection Process and reduce DSO.

Account Payables (AP)

Referring to “Quadient AP, by Beanworks”. Approve invoices and pay vendors remotely while reducing AP costs.

ICA HUB

Initial login portal/hub allowing access to Quadient ICA solutions purchased by the customer.

Quadient iForms

Quadient Inspire iForms (formerly Daylight Automation) allows you to create intelligent forms that collect, validate, and communicate business-critical information and data seamlessly across your organization.

Applicable Certifications and Assessments

Quadient ICA solutions are subject to many certifications, assessments and legal requirements, which are regularly externally validated.

Please note, that not all below mentioned are valid for all Quadient ICA solutions. Please use link below to understand, which certification and/or assessment is valid for a specific Quadient ICA solution.

Certifications / assessments per Quadient ICA solution

Main Security, Privacy and Compliance Areas

This chapter serves as an overview of Compliance, Security and Privacy controls implemented within Quadient ICA solutions.

These controls are regularly reviewed by internal auditors and independent external auditors to provide that all controls are in place, working as intended and in line with both Quadient and its customers’ expectations.

If you have any additional questions, you can reach out to us at privacyteam (at) quadient.com for privacy relevant questions or security (at) quadient.com for security relevant questions.

Compliance

Overview Committees

Policies

Team

Datacenters

Customer Data Separation

Quadient Access to Customer Data

Sub Processors

Awareness

Acceptable Use

Access Control

Availability and Continuity

Asset Management

Backups

Bugbounty

Business Continuity

Change Management

Cyber Insurance

Disaster Recovery

Encryption

Hardening

HR Security

Incident Management

Internal and External Audits

Logging

Monitoring

Network Security

Password Management

Physical Security

Quality Assurance

Risk Management

Secure Development

Security Bulletin / Status

Shared Responsibility

Third Party Management

Vulnerability Management

Data Protection Officer

Data Breach Notification

Data Subjects Rights

Data Retention

Data Erasure

How to Contact Us

Privacy Statement

Reports and Records

Policies

Latest Updates on Cybersecurity and Compliance

This page is intended to inform our customers and partners about the latest compliance updates for Quadient ICA.

For a full list of vulnerabilities and hot fixes, please visit our solutions Knowledge base

February 12, 2024 - Successful privacy re-assessments

February 5, 2024 - STAR registry listing for Quadient ICA SaaS solutions updated

August 11, 2023 - Successful HIPAA re-assessment for AR

May 31, 2023 - GDPR, CCPA and HIPAA for ICA HUB SaaS solution

April 14, 2023 - EcoVadis platinum for Quadient Group

March 29, 2023 - CSR report for Czech Republic

January 9, 2023 - Successful privacy re-assessments and new one for AP

June 28, 2022 - A message from our Chief Solution Officer, CXM Amid the COVID-19 Crisis

June 6, 2022 - Succesfull CPS231 and CPS234 assessment

May 31, 2022 - Successful HIPAA re-assessment for YayPay

March 8, 2022 - Statement on IT security against cyberthreat

August 31, 2021 - Independent privacy compliance verification

August 24, 2021 - YayPay HIPAA Compliance

March 1, 2021 - HITRUST for Impress SaaS

July 7, 2020 - HITRUST interim

March 16, 2020 - Statement on COVID-19

June 11, 2019 - HITRUST for Inspire SaaS

Page Type
Protected
Off