Trust Center - Blockdaemon
Blockdaemon
Blockdaemon empowers businesses to manage and deploy blockchain applications through the organization's node management platform. Our platform offers a multi-chain, multi-cloud network management tool that can deploy nodes and provide infrastructure that reduces the complexity of working with blockchains while offering faster deployment times and lower cost.
Industry-leading financial institutions, exchanges, custodians, cryptocurrency platforms and developers trust Blockdaemon as their onramp to over 70 blockchain protocols; making us the number one institutional staking provider by volume.
Blockdaemon was founded in 2017 and is headquartered in Los Angeles.
FAQ
Does Blockdaemon have a Security team or formal Information Security program?
Blockdaemon has an Information Security Office (ISO) that reports to the organization’s Chief Technology Officer. The ISO is responsible for ensuring that all requisite components of the security program are implemented across the organization. The ISO also provides strategic guidance to the business relating to risk management best practices and processes to ensure the confidentiality, integrity and availability of organizational business and technology functions.
Blockdaemon's ISO has a Information Security Officer who has the ultimate authority to drive information security at Blockdaemon via functional and operational levels; and, is responsible and accountable for the coordination of all ISMS (Information Security Management System) activities across the organization.
Does Blockdaemon maintain cyber liability insurance?
Yes. Blockdaemon maintains cyber liability and E&O insurance to protect the organization from information security events.
Does Blockdaemon comply with all industry security standards, laws and regulations applicable to their business?
Yes. Blockdaemon is ISO 27001 certified which allows our organization to comply with a variety of industry security standards and frameworks. Blockdaemon is subject to and compliant with international privacy regulations, including: the GDPR (General Data Protection Regulation) and CPRA (California Privacy Rights Act).
Are Blockdaemon end-user devices inventoried and monitored?
Yes. Blockdaemon maintains end-user devices via a mobile device management (MDM) platform (Jamf Pro). Jamf Pro allows for devices to be centrally inventoried and monitored in accordance with the organization's Asset Management Policy.
Do Blockdaemon end-user devices enforce baseline configurations?
Yes. All Blockdaemon end-user devices enforce consistent configuration standards to ensure uniform baseline security. All organization issued devices include the following:
- A password manager;
- Hard disk encryption;
- Antivirus protection;
- Screen lock enforcement.
Are Blockdaemon end-user devices and applications updated on a regular basis?
Yes. Automated device and application patching is performed on an ongoing basis (daily) and enforced via Blockdaemon mobile device management platform (Jamf Pro).
Are Blockdaemon internal and third-party applications inventoried and monitored?
Yes. Blockdaemon maintains an application inventory, including internal and third-party applications, within Vanta.
Does Blockdaemon maintain a data flow or architecture diagram of its network?
Yes. Blockdaemon maintains an architecture diagram of its network, including but not limited to: end-user devices, ACLS, Okta (SSO), virtual private network (VPN), development environments (development, staging, production), firewalls and HTTP proxies.