Your data is protected by 14 layers of security
We take the security of your financial information seriously. Most portals offer 5–6 layers of protection; ours provides 14 — so you can share sensitive documents with total confidence.
The 14 layers, explained
1. SSAE 16 / SOC 1 certified datacenter
Servers are housed in secure, 24/7 guarded facilities with closed-circuit surveillance and biometric access controls — the same standard publicly traded companies rely on.
2. Encrypted file storage
Your data is stored in an encrypted format on the server — not just in transit — the most effective method of securing sensitive information.
3. High-level filename obfuscation
Stored filenames are randomized, so even in the unlikely event of access, files are unrecognizable (and encrypted).
4. Forced SSL transfer
The portal automatically forces every transfer over an encrypted Secure Socket Layer, protecting your data in transit.
5. SQL injection protection
Parameterized data calls render SQL injection attacks — a leading cause of breaches — completely useless.
6. Brute-force login protection
After repeated failed logins, CAPTCHA technology blocks automated password-guessing programs.
7. Strong password policies
Weak, easily-cracked passwords are never allowed; administrators can enforce strength requirements.
8. State-of-the-art firewall
A hardened firewall is configured with the fewest ports open and advanced IP restrictions.
9. Real-time virus scanning
Servers are continually scanned, with virus definitions updated hourly.
10. Encrypted cross-server backups
Backups are encrypted and stored in highly secure facilities, so even backup data stays protected.
11. Denial-of-service protection
Automated systems detect and block abusive traffic on the fly to keep the portal available.
12. Intrusion prevention system
Every packet is inspected and instantly classified as legitimate or malicious before it reaches the servers.
13. Detailed audit trails & reporting
Complete records of every transaction help meet Gramm-Leach-Bliley requirements and prove information integrity.
14. OS hardening & patch management
Servers are continually hardened and updated with the newest patches to reduce exposure to threats.
These measures are fully compliant with Sarbanes-Oxley and the Gramm-Leach-Bliley Act.
