Organization Information:

Brainbench Inc.
14100 Parke Long Court
Chantilly, Virginia - VA 20151
Phone: 703-437-4800
Fax: 703-437-8003
http://www.brainbench.com
Contact Information:

Contact Office: Corporate Support
Contact Name: Randy Kraemer, Director, Client Services
Phone: 703-437-4800 Fax: 703-437-8003 Email: randy.kraemer@brainbench.com

Corporate Officer Information:

Corporate Officer: Rick Trinidad, Chief Information Officer
Phone: 703-674-3317 Fax: 703-437-8003 Email: rick.trinidad@brainbench.com

Safe Harbor Information:

Signed up to safe harbor 08/09/2005 10:52:31 AM
Next certification 08/09/2006
EU/EEA Countries From Which Personal Information Is Received: Czech Republic, France, Iceland, Liechtenstein, Netherlands, Slovakia, United Kingdom, Austria, Denmark, Germany, Ireland, Lithuania, Norway, Slovenia, Belgium, Estonia, Greece, Italy, Luxembourg, Poland, Spain, Cyprus, Finland, Hungary, Latvia, Malta, Portugal, Sweden
Industry Sector: Information Services - (INF) Computer Services - (CSV) Employment Services - (EMP) Education & Training - (EDS)
Personal Information Received From the EU: System Security:
Brainbench employs several methods for securing our servers from hostile and malicious traffic. The Brainbench Platform is securely co-located at Savvis Communications in Sterling, VA. The application itself is fire-walled from internet traffic. Only the ports for HTTP and HTTPS are forwarded through to the web servers form the external network, and only the web servers and database servers have connectivity to the application servers. The backend databases are not accessible from the internet, and are only visible to the application servers via a private network, and our administrative staff via IPSec VPN connection.
Physical Security:
Brainbench hosts its applications at the hardened and secured Savvis Communications co-location facility in Sterling, VA. Please refer to attached PDF for details of security measures in place at that facility.
Application/Organizational Security:
The Brainbench Application provides for a hierarchical security model, that isolates data access privileges at the company, company division, and development 'track' groupings. The administrative application supports 3 levels of security, 'Administrator', 'Manager' and 'Viewer'.
These privilege levels are configured at account creation, and are tied to the individual username/password combinations. Data is segregated by access level; ensuring proper access level is required prior to exposure to any sensitive information.
Data captured through the Brainbench Corporate Account is never shared with third parties, for any reason. There are multiple redundant processes in place to ensure enforcement of this policy.
Privacy Policy Effective: January 1, 2002
Location: brainbench.com/xml/bb/common/privacy.xml
Regulated by: Federal Trade Commission
Privacy Programs: N/A
Verification: In-House
Dispute Resolution: Brainbench is committed to cooperate with Data Protection Authorities located in the European Union or their authorized representatives.
Personal Data Covered: Human Resources Data - On-Line Capture
Human Resource Data Covered: Yes

Do you agree to cooperate and comply with the European Data Protection Authorities? Yes

Certification Status: Not Current
Compliance Status:

Safe Harbor Overview | Safe Harbor Documents | Workbook | Safe Harbor List
Information Required for Certification | Certification Form