Amazon Selling Partner API (SP-API): Need help in getting accepted for SP-API-restricted roles
Budget: $30 – $250 USD
We are an IT reseller and my team is automating inventory tracking, order processing, shipping, and tracking information, and other projects for full Amazon automation. We have all the normal API access, but we got rejected for the restricted roles. My developer needs access to SP-API-restricted roles.
In particular, need help better answer the following questions, so that we can get API approval:
-------------------------
If you have done this recently and would be able to assist us in getting these answers written in a way that Amazon will accept please let me know.
Thanks,
--------------------------------------------------------------------------------
These are the questions we are now failing on the developer's answers.
- Network Protection 1.1
Question - Describe the network protection controls used by your organization to restrict public access to databases, file servers, and desktop/developer endpoints.
- Asset Management 2.3.
Question - Describe the mechanism your organization has in place to monitor and prevent Amazon Information from being accessed from employee personal devices (such as USB flash drives, cellphones) and how are you alerted in the event such incidents occur.
- Data Governance 2.2
Question - Provide your organization´s privacy and data handling policies to describe how Amazon data is collected, processed, stored, used shared and disposed. You may provide this in the form of a public website URL.
- Encryption at Rest 2.4
Question - Describe where your organization stores Amazon Information at rest and provide details on any encryption algorithm used.
- Logging and Monitoring 2.6
Question - Describe how your organization monitors, detects, and logs malicious activity in your application(s).
- Risk Management and Incident Response Plan 1.6
Question - Summarize the steps taken within your organization's incident response plan to handle database hacks, unauthorized access, and data leaks.
- Credential Management 1.4
Question - How do you enforce password management practices throughout the organization as it relates to required length, complexity (upper/lower case, numbers, special character) and expiration period?
- Vulnerability Management 2.7
Question - How do you track remediation progress of findings identified from vulnerability scans and penetration tests?
In particular, need help better answer the following questions, so that we can get API approval:
-------------------------
If you have done this recently and would be able to assist us in getting these answers written in a way that Amazon will accept please let me know.
Thanks,
--------------------------------------------------------------------------------
These are the questions we are now failing on the developer's answers.
- Network Protection 1.1
Question - Describe the network protection controls used by your organization to restrict public access to databases, file servers, and desktop/developer endpoints.
- Asset Management 2.3.
Question - Describe the mechanism your organization has in place to monitor and prevent Amazon Information from being accessed from employee personal devices (such as USB flash drives, cellphones) and how are you alerted in the event such incidents occur.
- Data Governance 2.2
Question - Provide your organization´s privacy and data handling policies to describe how Amazon data is collected, processed, stored, used shared and disposed. You may provide this in the form of a public website URL.
- Encryption at Rest 2.4
Question - Describe where your organization stores Amazon Information at rest and provide details on any encryption algorithm used.
- Logging and Monitoring 2.6
Question - Describe how your organization monitors, detects, and logs malicious activity in your application(s).
- Risk Management and Incident Response Plan 1.6
Question - Summarize the steps taken within your organization's incident response plan to handle database hacks, unauthorized access, and data leaks.
- Credential Management 1.4
Question - How do you enforce password management practices throughout the organization as it relates to required length, complexity (upper/lower case, numbers, special character) and expiration period?
- Vulnerability Management 2.7
Question - How do you track remediation progress of findings identified from vulnerability scans and penetration tests?