Legal
Security Overview
Enterprise-grade security and compliance for modern service businesses.
1. SOC 2 Type II Compliance
TradeBook is SOC 2 Type II compliant. This means our internal processes, security controls, and data handling procedures have been audited by independent third-party firms to ensure they meet the highest industry standards for security, availability, and confidentiality.
We undergo annual audits to maintain this certification and continuously improve our security posture.
2. Data Encryption
Your data is protected both in transit and at rest:
- In Transit: All communication between your browser and our servers is encrypted using TLS 1.3 with high-grade ciphers.
- At Rest: Data stored in our databases and file storage systems is encrypted using AES-256.
- Key Management: We use industry-standard key management services to rotate and manage encryption keys securely.
3. Infrastructure & Resilience
TradeBook is hosted on AWS (Amazon Web Services) in Tier III data centers.
- Isolation: Each customer's data is logically isolated in our multi-tenant architecture.
- Backups: We perform automated daily backups with point-in-time recovery capabilities.
- Availability: Our infrastructure is designed for 99.99% uptime with multi-region failover.
4. Compliance & Certifications
SOC 2
Type II Certified
GDPR
Fully Compliant
ISO 27001
Aligned Practices
5. Responsible Disclosure
We welcome reports from security researchers. If you believe you've found a security vulnerability in TradeBook, please let us know.
security@bcmtechnologies.co
