Policies

Policies

Vermont.gov Security

Secured by Vermont.gov The State of Vermont and Vermont.gov take your Internet security very seriously. Our technology and policies are designed to make your online transactions with the State of Vermont safe, private, and secure. Rigorous policies and procedures are utilized to safeguard your personal information, such as social security numbers, banking information, and personal data.

Whenever you see the "Secured By Vermont.gov" icon (as seen in the upper right) on a Vermont State government webpage either in the footer of the page or displayed within the content, the following security measures have been taken:

  • State of the Art SSL (Secure Socket Layer) Encryption - This enables the encryption of sensitive information during an online transaction. Information sent via SSL can no longer be read as plain text.
  • Cybertrust Certified Logo Cybertrust Certified - Vermont.gov policies and procedures have been examined, measured, and validated by Verizon Business Security Solutions Powered by Cybertrust, the global information security specialist.
  • Vermont.gov Security - Hardware and software that controls the data entering and leaving the Vermont.gov network.
  • Secure Internal Networks - All data transferred between databases is done via secure FTP or Virtual Private Networks (VPN) to ensure that only authorized user can access the network and no one can intercept data.
  • Data Storage Policies - Unless necessary, Vermont.gov does not permanently store financial information or personally identifying information so it cannot be retrieved or compromised.
  • Physical Location Security - All physical locations where hardware and software are located are physically secured and only accessible by individuals with proper credentials.
  • Payment Card Industry Data Security Standards (PCI DSS) Compliant - Adherence to performance measurements outlined in the PCI DSS annual self evaluation, as well as submission to regular scans from Security Metrics to search for network vulnerabilities.
  • Application Security - A software tool is employed to scan for individual application vulnerabilities in each "Secured by Vermont.gov" service.
  • Sarbanes-Oxley Compliant - Adhere to secure change control procedures.

The State of Vermont and Vermont.gov work hard to protect your personal information while you do business with government online.