Data Security

At Business InfoTech Solutions, the security and safety of your information is a primary concern. To ensure maximum data security for Business InfoTech Solutions’ clients, we have developed a unique proprietary system called AuthentiConnect, which employs sophisticated industry standard encryption technologies coupled with our own secure authentication system to enable safe access to your data over the Internet. This system addresses data security concerns at two levels:

Online Data Security

Encryption: All communication between a computer accessing online data and our data servers is encrypted with the industry standard RC4 encryption algorithm using the VeriSign 128 bit Secure Socket Layer (SLL) with Extended Validation technology, an encryption technology that mirrors that used by US commercial banks for online data security.

Authorized Access: Firewalls and intrusion-detection devices prevent unauthorized electronic access to servers. Each user in the client organization is required to log on to its servers via an authentication system using a unique password and username.

Secure Data Center: All Business InfoTech Solutions client data is stored in a SAS 70 Type II certified data center. SAS 70 is an internationally recognized standard that ensures your data is protected using industry-leading best practices. The data center features include biometric and card access controls, 24/7/365 on site security, state-of-the-art fire detection, suppression and monitoring, N+1 building power redundancy, AC power plant with battery and generator backup.

MA CMR 17.00 Compliant: Business InfoTech Solutions systems are compliant with the recently introduced Massachusetts regulation that covers the storage, processing and transmission of key financial data such as name, social security numbers and financial account information. This online data security regulation defines standards for encryption, access controls, firewalls, OS patches, data transmission and monitoring.

Machine Specific Access: If requested by clients, our system can enforce login so that user access is limited to that user’s physical machine. This additional level of data security prevents usage from home and random remote computers.

Financial Controls

Check Processing: Enables only an authorized person to login to the data servers and print the checks locally.

Bank Account Access: Business InfoTech Solutions does not require any access to your bank accounts.

No Physical Records: The Business InfoTech Solutions process is completely paperless and stored at our SAS 70 compliant data center, with clients sending all documents to us in electronic form via either fax or scanned images.

Access Control to Data by User: Our system enables clients to specify what portions of the financial information can be viewed by each user. This allows clients to limit access to sensitive information.

Audit Trail: Our workflow system tracks each transaction entered into the system so that we know when a transaction is added or changed within the system.

I have been most impressed by the way Business InfoTech Solutions platforms their technology. Their Web Portal is amazing...