Security Considerations
Network protection and monitoring
AutoQuotes uses layers of controls for network protection, including firewalls, intrusion protection systems and network segregation. These multiple layers protect unauthorized access to and within our networks. AutoQuotes continuously monitors security systems, notifications and alerts to identify and manage threats. We are confident that we have minimized our public exposure to the internet.
User authentication
We provide access to the AQ application through a username and password login through a secure channel. For other AutoQuotes products, we provide a securely generated API key.
SOC 2
AutoQuotes successfully completed its SOC 2 Type 1 examination in May 2017 and has received its report. As established and described by the American Institute of Certified Public Accountants (AICPA): “These reports are intended to meet the needs of a broad range of users that need detailed information and assurance about the controls at a service organization relevant to security, availability, and processing integrity of the systems the service organization uses to process users’ data and the confidentiality and privacy of the information processed by these systems” The examination was conducted by independent CPA firm Kaufman Rossin. AutoQuotes publishers and subscribers can be confident in the secure, trustworthy controls we have in place as a SaaS provider.
Storage / Secure data centers
AutoQuotes’ servers are in enterprise-grade hosting facilities that use strict security controls to prevent physical access. This includes 24/7/365 on-site security staff and site monitoring. AutoQuotes maintains multiple data replicas and hosting environments in different locations to minimize the risk of data loss, downtime or power outages.
Servers
For reliable uptime, AutoQuotes utilizes layering strategies such as load balancing, task queues, and rolling deployments. All servers that run AQ software in production are IBM Bluemix systems, which we have found to be fast and reliable, with minimal issues.
Data encryption and storage
Your information is encrypted, stored and protected on secure servers. We encrypt all data that goes between you and the AQ application using industry-standard Transport Layer Security (TLS). TLS provides privacy and data integrity between communicating applications and prevents unauthorized reading of data during transport.
Customer Support
If you have any questions or concerns about security, please contact us. Our Customer Support team cannot access your information unless you authorize them to help. If you would like to report a vulnerability, please contact us. You can reach our Customer Support department at +44 (0) 1564 820 190 or support@aq-fes.com. Support is available Monday through Friday from 8:30 a.m. to 5:00 p.m. GMT.