Related Notes:

The risks of leveraging WordPress to manage and engage your Alumni Community and store their personal data (PII) has been highlighted in a series of security articles.

Despite the ease of use, the broad range of functions and features and the powerful library of plugins, the security risks for organizations that do not build and own the supply chain for their plugins and site themes remains incredibly high.

Currently CSA and ISO compliance is not provided for WordPress Sites that do not own or validate the code controls relating to plugins and themes.

IQVIA Alumni leverages the WP-MATH-CAPTCHA plugin which is no longer supported by the vendor

Related: The Inherent Security Risks Of Leveraging WordPress

Related: SAP Alumni Vendor Intraworlds Storing Plain Text Passwords

IQVIA Alumni Program: