Security Overview
Finagraph’s security program is designed to keep customer information safe and secure
Security is more important now than ever and at Finagraph, we have not only built all of our products and services with security technologies as the foundation, but also built our organizational culture with security in mind.
Our overarching goal is to help every business eliminate cash flow as a reason for failing and also radically streamline the banking and lending industry with breakthrough software and services.
This document outlines how we engineer security practices and technology into our products so our customers can be confident they are safe and secure.
Secure Cloud Infrastructure
Finagraph products and services are built on Microsoft Azure as our premier secure cloud provider.
-
Finagraph uses best-in-class secure cloud infrastructure provider, Microsoft Azure, to host the Strongbox platform
-
Finagraph leverages years of security enhancements that Microsoft Azure offers with their Platform as a Service (PaaS) services to better protect against security incidents
-
Finagraph uses automatic vulnerability assessments, advanced threat protections 24x7 allowing us to respond and resolve adverse events
-
The Azure platform maintains regular, independent security audits including SOC I, SOC II, and SOC III
Data Encryption
Finagraph uses bank-level security including the combination of the Advanced Encryption Standard (AES 256) and Transport Layer Security (TLS) to help keep sensitive data safe.
Data Isolation
Data isolation across pre-production and production environments is enabled by using Azure Active Directory & Role Based Access Control (RBAC) to ensure there is no cross-contamination of test data and customer data.
Threat Detection & Mitigation Process
Finagraph uses Azure Security Center as our centralized solution for strengthening our security posture across our infrastructure. With Azure Defender we leverage the continuous vulnerability assessments, threat protection capabilities to protect the resources & workloads
Strong Authentication
Finagraph uses industry-leading identity providers such as Auth0 for our identity and authentication management in our products. We adhere to the best-in-class compliance frameworks to ensure information security across the board.
Secure Monitoring
Finagraph continuously monitors with our 24/7 on-call team to help rapidly respond and resolve critical issues. As an organization, Finagraph is focused on building a cohesive security culture that include processes and protocols to address:
-
Data protection
-
Incident management
Business Continuity / Disaster Recovery
Finagraph's business continuity planning covers a broad range of organizational and product process to ensure seamless customer experiences, secure data backup and safe workplace practices in the event of a disaster or emergency.