This Security Addendum (“Addendum”) supplements the Enterprise Terms or other agreement that specifically incorporates this Addendum (the “Agreement”). Capitalized terms not defined herein have the meaning set forth in the Agreement.
Vidyard maintains a risk-based information security program designed to protect Customer Content and Viewer Data against unauthorized or accidental loss, destruction, or damage, consistent with industry standard practices, and Vidyard’s SOC 2 Type 2 attestation.
The security measures implemented by Vidyard include, but are not limited to, the following:
1. Encryption of data
2. Confidentiality, integrity, availability, and resilience
Vidyard maintains a comprehensive information security program aligned with ISO/IEC 27001 and NIST 800 guidance. Controls include:
3. Data availability and access
4. Processes for testing, assessing, and evaluating effectiveness
5. Identification and authorization of Vidyard personnel
6. Protection of data in transit and at rest
7. Platform physical security
8. Event logging
9. System configurations
10. IT and security governance
11. Certification/assurance of processes
12. Employee Security Training