Company Background

R.Portal Technology

The Hiperos technology platform is founded on three principles:

  • It must be easy to use.
  • It must be easy to implement.
  • It must be secure and open.

Technology Overview

Hiperos leverages a software-as-a-service (SaaS) application delivery model – meaning our customers do not need to purchase or to maintain hardware or software infrastructure to take advantage of our flagship product, R.Portal. Customers only need a web browser (e.g. Internet Explorer and Firefox). As a SaaS solution, Hiperos is hosted in a highly secure environment that provides a flexible, robust infrastructure that includes built-in redundancy and scalability. Our infrastructure is independently tested by Veracode1, ensuring a level of security and privacy assurance for our customers.

Some of the technology highlights include:

Security: Hiperos implements “best practices” when it comes to application security – from the architecture design to cryptography technologies. For example, all data including documents are stored in encrypted form in a relational database – no information is stored in unencrypted form anywhere on the platform. Hiperos was designed and built to leverage OWASP security design principles.

Integration: Hiperos was developed to fully support a services-oriented architecture and implements WS-* standards which make integration with customized, existing enterprise resources planning (ERP), and customer relationship management (CRM) solutions a straightforward effort.

Reliability: Recognizing that our customers require high availability and reliability, Hiperos and its hosting partners provide:

  • Built-in hardware, software, and system redundancy
  • Frequent back up and maintenance
  • Disaster recovery/business continuity
  • Multiple network service providers
  • International support and coverage
  • Data center personnel available 24/7

Privacy: Hiperos ensures confidentiality and integrity of information through a robust encryption strategy which is part of a larger focus on assuring the privacy of our customers’ information. The application platform itself allows our customers to implement role-based security through the segregation of duties that make data available on a “need-to-know” basis.

Note 1: In April 2011, Veracode analyzed, scored and rated our R.Portal product. R.Portal met or exceeded the security score outlined in the Veracode Risk Adjusted Verification Methodology using static binary analysis and dynamic analysis. Veracode’s risk adjusted verification methodology is based on respected industry standards including MITRE’s Common Weakness Enumeration (CWE) for classification of software weaknesses and FIRST’s Common Vulnerability Scoring System (CVSS) for severity and ease of exploitability and NIST's definitions of assurance levels.