Security & Privacy of Data
IDMI actively manages over 400 million records for our clients, and does not take lightly the trust that they place in us by allowing us to manage their data. Please find the following measures that are taken to help ensure the integrity of the data we manage:
- IDMI operates under a signed Client Confidentiality Agreement from the on-set (see attached). This document states that IDMI never owns the data, nor do we have the right to use, disclose, share, sell, send, report on, etc. the data without the express consent of our client.
- In addition, all employees also operate under a confidentiality agreement as a requirement of employment.
- Employees are unable to access data unrelated to the completion of their tasks.
- All data communication is met with password challenges for credentials; employee passwords are changed quarterly to prevent password theft.
- Citrix access and Web-based access to data is encrypted between servers and clients; encryption can be tailored to be as restrictive as necessary.
- All FTP transmissions occur over secure connection and no data is left on the FTP site after the transmission is complete.
- Firewalls exist between IDMI and the Internet, and are monitored continuously for unauthorized activity.
- IDMI is the sole occupant of a 20,000 square foot office building in Akron, Ohio. This means that there are no unknown people walking through our building. Our facilities are equipped with a security code alarm system and motion detectors. Employees can only access the building by prox-badge during business hours. All access is controlled.
- The interior of the building is also split into grids with access to specific areas controlled by prox-badge.
- All project data is archived from the network after the project has been completed.
- Daily tape back-ups are stored off-site in a bank safety deposit box for emergency purposes.
|