Availability and security

Availability class

eIAM provides high availability in accordance with Availability Class 3 (AC3). It is therefore operated by a 24/7 organisation in federal data centres and – shortly, for AGOV – in non-federal data centres of mandated Swiss providers located in Switzerland (). Its availability is monitored automatically. The platform and software are designed for a high level of resilience. Any incidents are always resolved as quickly as possible.

The eIAM team maintains a 24/7 operational organisation with automatic monitoring, alerts and an on-call service.

The support for eGovernment end users is located in the specialist offices and is available during office hours. AGOV is an integral part of eIAM. With regard to AGOV, end users should open tickets with support requests in the self-service area at ; these are forwarded to the so-called specialist office, which in the context of AGOV can be any Swiss authority.

Security

eIAM security is kept high with several measures, starting with infrastructures in Federal and non-Federal data centers (mandated Swiss providers headquartered in Switzerland) that are adequately shielded physically and in terms of software, the selection of security-tested software components from trustworthy manufacturers, background checks of all system administrators and the ongoing monitoring of the system security status. The latter is carried out by ethical hackers as part of the federal government's bug bounty programme, which is managed by the National Cyber Security Centre (NCSC) and implemented by Bug Bounty Switzerland AG. The selection process for ethical hackers includes personal identification and a background check. If participating in a bug bounty programme, ethical hackers must accept the programme terms available at and undertake to comply with the rules listed.