How do we secure your data?
We take data security very seriously at PracticePanther and it's one of our top priorities to ensure that we are meeting the most stringent, industry standard recommendations at all times. We use safe protocols for communication and transferring data (such as HTTPS). We use anonymizing and pseudonymising where suitable. We continuously monitor our systems for possible vulnerabilities and attacks.
Where is your data located?
We use Microsoft Azure geo-redundant servers that backup the data in real-time across multiple geo-redundant locations across the US.
How secure is our data?
We take security extremely seriously. We employ the following security protocols (amongst many more that we cannot disclose):
The app is protected by a 256-bit SSL encryption. Data is encrypted “at rest” and “in transit” for all customer data.
Automated auditing and threat detection with Microsoft Azure.
24-hour threat management protects resources from malware, distributed denial-of-service (DDoS), man-in-the-middle (MITM), and other threats from Microsoft Azure.
We use third party scan checks for vulnerabilities in every part of the software. Using the same techniques as malicious hackers, we systematically test all access points.
Additional protection is provided by Cloudflare.com.
All communications between PracticePanther and third party integrations are always encrypted.
Sophisticated firewalls are enabled with Microsoft Azure.
Our data is backed by the Microsoft Cloud which has 3 layers of physical security.
Security filtering with access level controls.
Each new feature released goes through manual and automated tests to ensure each user can only get data he has access to as set in our security controls.
We use advanced security filters on both the data layer and the application layer.
Additional front-end and back-end security measures:
You and your team have the option to enable two-step authentication when logged into PracticePanther which sends an additional unique login code (see here).
Custom security roles. When adding a new member, you can limit their access to only certain parts of the software, so they can’t see financial reports for example (see here).
Login throttling. When someone tries to login to your account with an incorrect password more than a certain number of times, they will be locked out for a certain amount of time.
If you have any questions regarding your data, privacy, or security, please contact us.