Page 1 of 1

Security Requirement Questions

Posted: 2020-09-09 21:26
by mamajeed7
I am planning to implement FileZilla, however I have following Security Requirement, can you tell me if these requirements can be met through FileZilla?
• All traffic must be encrypted.
• Data payloads for sensitive files sent out from Client to suppliers must be encrypted at rest as well.
• ITAR and other regulatory requirements must be enforced.
• Logging must be available to track activity.
• Legal requirements/agreements must be in place for any recipient.
• Must require strong authentication for supplier access to the portal.

Re: Security Requirement Questions

Posted: 2020-09-10 07:55
by botg
Unless a user explicitly selects an insecure protocol, FileZilla asks for confirmation before using an insecure connection.

Files are transferred as-is. FileZilla does not care what is in a file and what happens to it on the destination.

To enforce compliance to pointless and arbitrary regulations, position a lawyer with a whip behind each user.

Re: Security Requirement Questions

Posted: 2020-09-18 14:51
by mamajeed7
Thank you so much for reaching out to me.

Is there a way that I can have someone to walk me though the tool, I have few needs for my company specific.

I may need some enhancements to existing tool in order to meet all the requirements, is it doable?

Can you please redirect me into right direction so that I can work with your Analysts?

Re: Security Requirement Questions

Posted: 2020-09-23 14:43
by mamajeed7
Business Requirement: Implement an FTP automation tool for gathering engineering prints, specifications and CAD files and uploads to a controlled website that can be accessed by Purchasing and external suppliers.
We are looking for a more polished version of our in-house built FTP tools where we can gather and collect the PDF drawings, BOMs, CAD files, Excel, MSWord, video, anything large or that requires security and then send file(s) to external supplier(s).