Teamwire: Ensuring Your Data is in Safe Hands
With Teamwire, Your Communication Is Fully GDPR-Compliant and Legally Secure.
Companies need GDPR-compliant solutions to protect data optimally and avoid costly fines. At the same time, legal certainty is essential to prevent any unwanted data misuse. With our messenger, we offer a comprehensive answer to these challenges.
Modern Encryption Technology to Protect Your Communication and Data from Cybercrime
With the ever-increasing threat of cyberattacks, companies and government agencies need to strengthen their communication security. Teamwire uses state-of-the-art encryption technology to protect your data from unauthorized access and ensure maximum security. These are the key aspects of our security measures:
- Encrypted data exchange
between app and server with HTTPS (TLS 1.2 with “Perfect Forward Secrecy”). The app and server negotiate random, temporary keys that prevent a potential attacker from decrypting the network traffic afterwards.
- Encrypted metadata
Your metadata, including the encrypted messages, is encrypted with AES-256 before being exchanged between the client and server. Only the app and the server can decrypt these data packets. For this purpose, an individual “communication key” is exchanged with Diffie-Hellmann for each device during registration to protect metadata and prevent man-in-the-middle attacks.
- Encrypted messages
Messages and digital media (photos, files, etc.) are encrypted by the sender using AES-256 and only decrypted by the recipient after transmission. For this purpose, an individual key is generated for each chat and exchanged once with the chat members in encrypted form.
- Encrypted data storage on the servers
All messages, digital content, and user data are stored on our servers in encrypted form using AES-256. The database key is outsourced via the so-called “Vault”.
- Encrypted storage on the end devices
To protect and separate company data, user data, messages, and digital content on mobile devices are also stored encrypted with AES-256.
Privacy: Strong Protection of Privacy
Data breaches and unauthorized access to personal data are a major risk these days. Teamwire therefore relies on comprehensive measures to protect your privacy consistently. This is how we ensure that your data is always secure. Here are the key points:
-
Anonymized user data
Teamwire largely anonymizes personal data and treats all data with absolute confidentiality.
-
One-way encrypted passwords
All IDs, phone numbers, e-mail addresses, and passwords are converted before storage using one-way encryption functions such as SHA-256 and other secure algorithms.
-
The address book is not saved
To protect your contacts, all contact data is anonymized using hash functions (SHA-256) and deleted from our servers immediately after connecting with colleagues. The user’s address book is not saved.
-
No metadata analysis
No analyses of metadata, users or their communication take place.
-
Simple user settings
Thanks to our easy-to-use app, you don’t have to make any complicated settings to protect your privacy. You select a chat for communication simply and the messages are only sent to the recipients of this chat.
Specific Functions Guarantee Absolute Data Sovereignty and Control over Your Data
Uncontrolled data flows and data loss can have serious consequences for the security and efficiency of your organization. Therefore, they need absolute sovereignty and comprehensive control over their data. This includes, among other things, where data is stored, who can access it, and how long it is stored. With its specific features, Teamwire offers you exactly this control and guarantees absolute data sovereignty.
Fail-Safe Communication Thanks to Secure Hosting and Certified Infrastructure
IT failures, e.g. due to cyberattacks, can abruptly block your communication channels and paralyze operations. With Teamwire, you have a secure platform that ensures stable and smooth communication even in the event of IT disruptions. Our secure hosting and robust infrastructure eliminate downtime risks and ensure continuous availability.
- German cloud
Teamwire hosts data in a German data center with locations in Berlin, Karlsruhe, and Frankfurt. The subcontractor is the German provider IONOS. We do not use AWS, Google Cloud, or Azure.
- ISO 27001 certification
Teamwire and all our data centers are ISO 27001 certified. This certification ensures that high information security standards are guaranteed by company-wide management systems and guidelines.
- BSI-C5 certificate
Our data centers have been awarded the BSI-C5 certificate (Cloud Computing Compliance Criteria Catalog). This certificate guarantees that our data centers meet high security and compliance standards and all relevant public sector requirements.
- Private cloud or on-premise solution
For companies that prefer a private cloud or an on-premise solution, Teamwire offers suitable options. Customers can also host Teamwire in a private cloud or on-premise on company-owned servers.
- Scalable architecture
Teamwire offers the right server architecture depending on company size and operating requirements. This architecture is highly scalable and performant.
- Reliable cluster setups
Guaranteeing maximum scalability and availability, Teamwire is suitable even for very large companies and groups with up to 200,000 employees.
- Certified and modern premium data centers
offer excellent network connectivity, 24/7 monitoring, strict access controls, and are ideally equipped for emergencies.
- Comprehensive network protection
Teamwire’s servers are behind robust “firewalls” that only allow access to selected users. The network and its traffic are monitored and checked 24/7.
- 99.9% uptime
Teamwire uses multiple servers in different locations to ensure high availability. We guarantee at least 99.9% uptime. In recent years, we have always exceeded this availability.
- High service level agreements
For both the cloud and on-premises versions – guarantee high system availability and reliability and fast response times to support requests.
- Continuous, redundant data backup
All data is written synchronously to several servers, regularly backed up, and stored in encrypted form in different locations. Backups are also created continuously.
- Emergency protocols for potential emergencies
Ensure rapid limitation of the source of the fault and immediate restoration of stable operation, e.g. by switching to another data center in the event of a fire or earthquake.
Company-Wide Security Through Central Administration
Companies need comprehensive and centralized management and control over all users, devices, and data to close security gaps and ensure efficiency. With Teamwire, you have exactly this centralized control over your corporate communications, thanks to an administration that makes defining and enforcing security policies simple and efficient.
Mobile Application Management to Protect Company Data on Mobile Devices
Without comprehensive mobile application management, data on employees’ mobile devices can easily be compromised. Teamwire offers a secure solution with encrypted app containers and seamless integration with leading MDM/EMM solutions. This ensures that your data remains protected at all times and your communication is secure.
-
Access protocol for each account
Each user can track exactly on which end devices and at what time their account was accessed, which offers additional security and transparency.
-
Secure, encrypted app container
On mobile devices, which means that data can be fully managed and controlled by IT administration.
-
Secure app tunnel
To protect access to the corporate network and prevent unauthorized access. Registration tokens: IT administrators can define registration tokens for users’ endpoints to prevent access to and use of Teamwire on unmanaged endpoints.
-
Fully automatic and secure setup
The entire app setup and registration process can be fully automated without user interaction when combined with MDM/EMM solutions.
-
Integration des Enterprise Mobility Managements
Teamwire is seamlessly integrated into leading MDM/EMM solutions, such as Ivanti/MobileIron and VMWare/Airwatch, and is compatible with other systems such as MS Intunes, Citrix XenMobile, IBM MAAS360 and Soti. This enables the implementation of additional security guidelines for mobile end devices.
-
Tested mobile apps
The security of the Teamwire apps is regularly checked with every release, for example by Appicaptor, and evaluated in penetration tests to ensure the highest security standards.
Market-Leading MDM/EMM/UEM Providers & AppConfig Standard
Reliable Partners for Secure Corporate Communications
Ensuring Audit Compliance and Adherence to Compliance Regulations
Without comprehensive audit compliance, companies can quickly get into legal difficulties. Therefore, Teamwire attaches great importance to audit security and compliance to make your corporate communications secure and compliant. Our solution includes features such as audit-proof archiving and professional audit logs to ensure that all legal and internal requirements are met.
Zero-Trust Security Concept to Ensure the Highest Security Standards
Teamwire consistently relies on a zero-trust security concept to ensure the highest security standards and protect your company data from unauthorized access. Here are the key aspects and benefits of our Zero Trust approach:
- Multiple authentication for users
Teamwire users are authenticated via their e-mail address and telephone number to prove their identity before they can communicate with colleagues and teams.
- Two-factor authentication for administrators
Teamwire administrators must first go through a multi-stage registration process. Two-factor authentication is required each time to access the administration portal. Administrators enter a password and an app-based second factor to access confidential company data.
- Permanent user and device authentication
Several unique IDs and factors are checked constantly to authenticate users and end devices. This happens every time the app is accessed or opened, as well as when messages are retrieved and sent.
- Passcodes for users
For added security, the IT administrator can set a PIN passcode for each employee to access the Teamwire app.
- Blocking access for users or devices
The IT administrator can quickly and easily block the access of a user or end device, for example, if an employee leaves the company or their end device has been compromised.
- Minimal authorizations and rights
To ensure the best possible data protection, Teamwire assigns as few authorizations and rights as necessary – at the app, server, and infrastructure levels.
- Reduced access
Access via firewall, APIs, etc. is reduced to a minimum. The server only communicates with known devices. Unknown device IDs are automatically rejected.
- Strict internal security policies
Teamwire treats data with absolute confidentiality and implements strict internal security policies that limit access to infrastructure, data centers, and systems as much as possible.
- Internal and external audits
Regular audits, including penetration tests, vulnerability analyses, and security assessments, ensure the highest security standards. Teamwire works closely with external security companies and IT associations.
- IT Baseline Protection of the BSI
- Cloud-Computing (C5) of the BSI
- Cryptographic Procedures of the BSI
- Certification according to DIN ISO/IEC 27001
- DIN EN ISO 9001
- CSA (Cloud Security Alliance)
- Sarbanes-Oxley Act (SOX)
- Health Insurance Portability and Accountability Act (HIPAA)
- Markets in Financial Instruments Directive II (MiFID)
- Payment Card Industry Data Security Standard (PCI-DSS)
- Data Security and Protection Toolkit (DSP) der NHS