Security challenges

At Values Associates, all our software is:

  • 100% secure: no compromise on security, sustainability, and compliance with your IT prerequisites
  • 100% upgradeable: continuous innovation, with 15% of our revenue dedicated to research and development
  • 100% made in France: design, development, maintenance, and hosting managed in France

Guarantees for the performance and availability of your application

  • Hosting: our servers are located in France with a redundant system in place to ensure uninterrupted service.

  • Backups and restoration: we perform regular backups with systematic encryption, storage across different geographic sites, and restoration exercises at least once a year. We use Load Balancing technology to distribute workload across multiple servers and prevent any service interruption.

  • Monitoring: we monitor server resource consumption and service status to detect anomalies, anticipate them, and prevent potential service outages. We guarantee the IT resilience of your information systems with our disaster recovery plan and business continuity plan, complemented by an annual exercise to verify compliance with DRP/BCP requirements.
Interface logicielle permettant la digitalisation des entreprises.

A commitment to each of our clients.

  • Data protection: database encryption (SSL), access control, single sign-on (SSO) authentication, data protection in compliance with GDPR, IP address restrictions, widespread use of two-factor authentication (2FA) with preference for methods other than SMS.
  • Intrusion attempts: use of a Security Information and Event Management (SIEM) system to detect security incidents and assess threat evolution; systematic audits and penetration testing on our applications/servers before delivery and at least once a year; systematic code audits on our no-code platform deliveries before production and at least once a year.
  • Automated testing: use of automated tests to ensure the functional security of our applications and prevent regression; automated tests for proper SSL encryption protocol configuration using Qualys SSLLabs tool.
  • OWASP: adherence to OWASP organization recommendations, the reference for web application security, and TOP 10 report guidelines; use of the OWASP ASVS security standard for conducting our audits with the prerequisite of achieving at least level 2 for our applications.
  • ISO 27001: ISO 27001 Lead Implementer IT security certification for our Chief Information Security Officer, and ISO 27001 certification in progress for our no-code platform.
  • Traceability: traceability of all modifications (creation/deletion/editing).
  • Vulnerability management: monitoring of vulnerability publications through IT security and cybersecurity experts CERT-FR CERT-XMCO / CVE Mitre / OpenCVE and standard monitoring.

Key strengths of the offering

  • Provide you with a comprehensive and centralized view of your activities
  • Save you time in collecting, processing, analyzing, and communicating information through digitalization of approaches and procedures
  • Foster collaboration within your organization and enhance the quality of your activities

100%
simple and intuitive

The user experience above all else:
everything is intuitive, visual, simple and easy to use

100%
secure

No deadlock on security,
durability and compliance with your IT requirements

100%
upgradeable

Applications benefiting from continuous innovation,
thanks to the 15% of our turnover spent on R&D

100%
made in France

Design, development, maintenance
and hosting managed in France

100%
customized

Infinite possibilities for customizing
your application, features and ergonomics