Skip to content
Client Portal Security

Your data is protected by 14 layers of security

We take the security of your financial information seriously. Most portals offer 5–6 layers of protection; ours provides 14 — so you can share sensitive documents with total confidence.

How we protect you

The 14 layers, explained

1. SSAE 16 / SOC 1 certified datacenter

Servers are housed in secure, 24/7 guarded facilities with closed-circuit surveillance and biometric access controls — the same standard publicly traded companies rely on.

2. Encrypted file storage

Your data is stored in an encrypted format on the server — not just in transit — the most effective method of securing sensitive information.

3. High-level filename obfuscation

Stored filenames are randomized, so even in the unlikely event of access, files are unrecognizable (and encrypted).

4. Forced SSL transfer

The portal automatically forces every transfer over an encrypted Secure Socket Layer, protecting your data in transit.

5. SQL injection protection

Parameterized data calls render SQL injection attacks — a leading cause of breaches — completely useless.

6. Brute-force login protection

After repeated failed logins, CAPTCHA technology blocks automated password-guessing programs.

7. Strong password policies

Weak, easily-cracked passwords are never allowed; administrators can enforce strength requirements.

8. State-of-the-art firewall

A hardened firewall is configured with the fewest ports open and advanced IP restrictions.

9. Real-time virus scanning

Servers are continually scanned, with virus definitions updated hourly.

10. Encrypted cross-server backups

Backups are encrypted and stored in highly secure facilities, so even backup data stays protected.

11. Denial-of-service protection

Automated systems detect and block abusive traffic on the fly to keep the portal available.

12. Intrusion prevention system

Every packet is inspected and instantly classified as legitimate or malicious before it reaches the servers.

13. Detailed audit trails & reporting

Complete records of every transaction help meet Gramm-Leach-Bliley requirements and prove information integrity.

14. OS hardening & patch management

Servers are continually hardened and updated with the newest patches to reduce exposure to threats.

These measures are fully compliant with Sarbanes-Oxley and the Gramm-Leach-Bliley Act.