Security Policy
Our Commitment to Security
At Nex Systems, we take the security of your data seriously. Our comprehensive security program protects your information across all our AML, KYC, Screening, Accounting, CRM, and AI solutions through multiple layers of protection.
Data Encryption
All data is encrypted both in transit and at rest using industry-standard encryption protocols:
- TLS 1.3 for data in transit
- AES-256 encryption for data at rest
- End-to-end encryption for sensitive communications
- Regular encryption key rotation
Access Controls
We implement strict access controls to ensure only authorized personnel can access your data:
- Multi-factor authentication (MFA) for all accounts
- Role-based access control (RBAC)
- Regular access reviews and deprovisioning
- Principle of least privilege
- Session monitoring and logging
Infrastructure Security
Our infrastructure is built with security as a foundation:
- Secure cloud hosting with SOC 2 Type II compliance
- Network segmentation and firewalls
- Regular vulnerability assessments
- Automated security monitoring and alerting
- Disaster recovery and backup systems
Compliance Standards
We maintain compliance with industry standards and regulations:
- SOC 2 Type II certification
- GDPR compliance for EU data protection
- AML and KYC regulatory requirements
- ISO 27001 security management standards
- Regular third-party security audits
Incident Response
In the event of a security incident, we have established procedures:
- 24/7 security monitoring and response team
- Immediate containment and assessment procedures
- Transparent communication with affected customers
- Post-incident analysis and improvement
- Cooperation with law enforcement when necessary
Employee Security
Our team undergoes comprehensive security training:
- Background checks for all employees
- Regular security awareness training
- Secure development practices
- Confidentiality agreements
Reporting Security Issues
If you discover a security vulnerability, please report it to us at security@nexsystems.com. We take all reports seriously and will investigate promptly.
Last updated: January 2025