diff --git a/security.mdx b/security.mdx index cb9d273..ab1b0aa 100644 --- a/security.mdx +++ b/security.mdx @@ -161,6 +161,8 @@ All Kernel employees complete mandatory device security training that covers pro - Restricted administrative privileges - Software patching kept up to date +Kernel deploys endpoint detection and response (EDR) tooling across all company-managed endpoints to support continuous monitoring, threat detection, and response. + ### 4.6 Vendor Management Kernel requires a vendor security assessment before third-party products or services are used. The review may include gathering applicable compliance audits (SOC 1, SOC 2, PCI DSS, HITRUST, ISO 27001) or other security compliance evidence. Agreements are updated when business, legal, or regulatory requirements change.