Monday, July 7, 2014

Securing Your Salesforce Organization

Trust.salesforce.com is the Salesforce community's home for real time information on security and system performance.The site provides live data on recent phishing and malware attempts targeted at Salesforce users.The security tab provides information on how to identify and avoid the different types of security threats, and link to report suspicious emails that involve salesforce.com brand.The site also gives tips on best practices for securing your organization.




Social engineering involves phone calls or emails from persons who misrepresents themselves as employees or agents of salesforce.com and are attempting to steal your Salesforce credentials.
Phishing : 
Malware :
Security Best Practices :






Security Best Practices for websites :



Techniques that administrators can use to train end users on Salesforce security?
Leverage chatter and chatter groups to keep users up to date on the latest security information .Send a newsletter with latest security updates and threats.Require end users to take a security quiz and consider offering prizes as a motivation.End users can test their knowledge by taking the phishing awareness quiz on the security.force.com website.
Administrator Best Practices :








Modifying Security Settings:
1. Trusted IP Ranges for Entire Organization
2. Login IP Ranges for Profiles used by customer support rep
3. Login Hours for Profiles used by customer support rep
4. Session Settings
5. Password Policies






Setup Audit Trail :
Login History :

Summary :














No comments:

Post a Comment