OTOBO | MAKE PEOPLE SMILE. IT’S EASY.

Security and Compliance

Confirm trust through data security and compliance

With OTOBO, you protect sensitive data, minimize risks, and reinforce your internal and external customers’ trust in your service management environment. You effortlessly meet legal directives like GDPR and compliance requirements, ensure auditability through secure data storage, and maintain control over your data.

SECURITY & COMPLIANCE

Benefits

  • Protection of sensitive business data

    Through encryption and access controls, OTOBO safeguards sensitive data, such as customer contact information, internal process details, and intellectual property, from unauthorized access.

  • Compliance with regulations and standards

    Your industry is subject to specific legal regulations and compliance standards, such as GDPR or HIPAA. With integrated compliance features, OTOBO can assist in meeting these requirements.

  • Risk mitigation

    By ensuring data security and compliance with standards, you reduce the risk of data breaches, fines, reputational damage, and legal repercussions.

  • Customer and stakeholder trust

    As a robust service management software, OTOBO ensures security and compliance to maintain the trust of your customers and partners.

  • Efficient incident response

    In the event of security incidents or data breaches, OTOBO enables quick response and measures for containment and resolution.

  • Transparency and auditability

    Secure records of who accessed what data and what changes were made provide transparency, facilitating internal audits and external reviews by authorities or third parties.

SECURITY & COMPLIANCE

Capabilities

Simple and secure single sign-on (SSO) login

Single Sign-On (SSO) enables employees, in conjunction with their authentication backends such as Active Directory, LDAP, or databases, to access OTOBO and other systems with a single login. You can also use Kerberos or OpenID Connect / OAuth 2.0 as an authentication protocol and authenticate your users against an authorisation server.

SSO enhances user-friendliness and security, reduces password fatigue, and facilitates centralized user account management.

Security and Compliance | OTOBO 1
Security and Compliance | OTOBO 2

User access control with 2-factor authentication (2FA)

In addition to logging in with a username and password, an individual two-factor authentication token can be required as an additional security measure for login. This token is uniquely generated for each login process using an ISO-certified algorithm, such as Google Authenticator or any other token generator, and delivered via email, SMS, or app.

Simple Brute Force Protection

After a defined number of failed login attempts, users are initially locked out to prevent passwords from being guessed through endless trial and error.

Security and Compliance | OTOBO 3
Security and Compliance | OTOBO 4

Implementing extended password policies

Enhance user account security and mitigate risks associated with inadequate passwords. With OTOBO, you can ensure that user passwords meet all requirements of the organization-wide password policy.

Encrypt your communication

All data transmitted to and from OTOBO can be SSL encrypted. Emails can be signed with S/MIME certificates or PGP keys as needed, including email notifications to agents. OTOBO automatically retrieves the S/MIME certificate from the directory service before sending emails, eliminating the need to upload certificates twice.

An extension of filtering options in OTOBO enables filtering and automatic processing of encrypted emails as well.

Security and Compliance | OTOBO 5
Security and Compliance | OTOBO 6

GDPR compliance – protect personal data

OTOBO provides security features to ensure the protection of personal data, including SSL encryption and access controls. This ensures that your service management platform adheres to the principles of data protection and security recommended by the GDPR.

Audit trail and logging

In case of emergency, logging all data access and modifications provides the opportunity to ensure transparency regarding the use of personal data and to identify the causes in the event of data protection breaches.

Security and Compliance | OTOBO 7
Security and Compliance | OTOBO 8

Control access leveraging authorizations

By intricately defining user rights through roles, groups, and Access Control Lists (ACLs), you control granular access to organizational areas, views, and data within OTOBO.

Security and Compliance | OTOBO 9

SCALABLE PLATFORM

Integrated Compliance

IT Service Management (ITSM)

Security and Compliance | OTOBO 10

OTOBO simplifies compliance with regulations through automated security checks, logging of data access and modifications, and granular access control. Meet data protection and security standards, minimize risks, and ensure transparency in your data usage.

➞ Additional ITSM capabilities

Customer Service Management (CSM)

Security and Compliance | OTOBO 11

OTOBO automates security policy monitoring, logs data access and modifications, and offers granular access control. Meet data protection and security standards to safeguard customer data, minimize risks, and ensure transparency in customer interactions.

➞ Additional CSM capabilities

Enterprise Service Management (ESM)

Security and Compliance | OTOBO 12

With OTOBO, you orchestrate the functions to protect sensitive personal and business data centrally across all service areas. All service providers can trust that their customers’ data and processes are safeguarded against unauthorized access.

➞ Additional ESM capabilities

SERVICE EXCELLENCE

Ready to take the next step