Trust Center
At FinQuery, we realize that security and reliability are very important to our clients.
Our clients trust us with their data and we take this responsibility very seriously. Ensuring the security of our clients’ data, and the systems and applications that store this data, is a top priority for us.
FinQuery welcomes any and all security community support to further protect our systems and customers. Please use the following form to register a security-related question or concern.
Trust Center
At FinQuery, we realize that security and reliability are very important to our clients.
Our clients trust us with their data and we take this responsibility very seriously. Ensuring the security of our clients’ data, and the systems and applications that store this data, is a top priority for us.
LeaseQuery welcomes any and all security community support to further protect our systems and customers. Please use the following form to register a security-related question or concern.
CATEGORY
TOPIC
DETAILS
Accessibility
Accessibility
We undertake commercially reasonable efforts towards improving our user experience to ensure we provide equal access to all of our users. As such, our efforts are guided by the Web Content Accessibility Guidelines (WCAG), which defines requirements for designers and developers to improve accessibility for people with disabilities.
If you have any questions regarding our applications, contact us at
1-800-880-7270 or support@leasequery.com for assistance and feedback.
Artificial Intelligence/Machine Learning
AI/ML
With permission from select customers, we trained our model to recognize various types of leases to better detect where information is located in an individual lease. The output of the AI/ML system consists of predictions for each relevant field, which are then verified by the customer’s end users. All data is handled to the same security standards for all FinQuery solutions.
Asset Security
Baselines
Hardening Standards
Availability and Reliability
Change Management
Availability and Reliability
Code Review
Availability and Reliability
Segregation of Environments
Business Continuity
Backups
Business Continuity
Business Continuity
FinQuery’s solutions, including all data stored, are hosted in at least two different locations in the United States.
Business Continuity
Disaster Recovery
Compliance
Hardware
- Huawei Technologies Company
- ZTE Corporation
- Hytera Communications Corporation
- Hangzhou Hikvision Digital Technology Company
- Dahua Technology Company
Compliance
HIPAA
Compliance
SOC
Data Security
Data Classification
Data Security
Data Encryption At-Rest
Data Security
Data Retention and Disposition
Data Security
Digital Certificates
Data Security
Data Encryption In-Transit
Data Security
Non-disclosure agreements
Data Security
Secrets Management
Data Security
Password
Identification, Authentication, Authorization, Auditing, and Accountability
Access Control
For customer-facing solutions, FinQuery maintains formally defined external user types, with varying access rights and privileges based on the role of the user.
Identification, Authentication, Authorization, Auditing, and Accountability
Identification
Identification, Authentication, Authorization, Auditing, and Accountability
Job Roles
Identification, Authentication, Authorization, Auditing, and Accountability
Passwords
Identification, Authentication, Authorization, Auditing, and Accountability
Single-Sign On (SSO)
- Secure.finquery.com: Integrates with any single sign-on (SSO) system that supports Security Assertion Markup Language (SAML) 2.0
- FinQuery Software Management: Integrates with Google Oauth 2.0
Incident Management and Response
Incident Response Plan
Incident Management and Response
Monitoring and Logging
Infrastructure
Data Center
- AWS datacenter compliance controls: https://aws.amazon.com/compliance/data-center/controls/
- AWS datacenter SOC reports: https://aws.amazon.com/compliance/soc-faqs
Infrastructure
Physical Security
Infrastructure
Cloud Hosting
Organizational Security
Acceptable Use
Organizational Security
Central Contact
Organizational Security
Contractor Usage
Organizational Security
Employee Background Checks
Organizational Security
Employee Status Change
Organizational Security
Personnel Security
Organizational Security
Security Program
Organizational Security
Secure Remote Access
Organizational Security
Separation of Duties
For incompatible or sensitive functions, FinQuery enforces separation of duties both statically (e.g. role-based permissions) and dynamically (e.g. controlling access at time of access). FinQuery also enforces the principle of least privilege, restricting access and rights to introduce changes to only those necessary.
Organizational Security
Training and Awareness
Operational Security
Asset Management
Operational Security
Procurement
Threat and Vulnerability Management
Antivirus Antimalware
Threat and Vulnerability Management
Threat and Vulnerability Management
Penetration Testing
Threat and Vulnerability Management
Responsible Disclosure
Threat and Vulnerability Management
Risk Mitigation
Threat and Vulnerability Management
Vulnerability Management