Secure communication, collaboration, and storage is fundamental and of utmost importance to WealthBook. From protecting client/household confidentiality to ensuring secure online review and collaboration with advisors, the ability to maintain proper security of all information and data is a foundational element of WealthBook.
With the desire to maintain the highest level of security possible, WealthBook's privacy and security approach to data protection addresses the physical, server, network, access, and communication areas of security with highly-trained people, cutting edge technology, and industry best practices.
Privacy
Detailed privacy and security policies are accessible via links at the bottom of WealthBook.com web pages. WealthBook does not provide any personal information to Third Parties.
Data Storage: SAS 70 Type II Data Center
- SAS 70 is a series of policies to ensure the highest security and availability of data. These policies are audited on a regular basis by a third party to ensure the data center maintains it compliance with the mandated policies.
- Physical access to the data center is restricted to essential authorized personnel, and multiple levels of authentication are required, including biometric access and a random numbered entry keypad system. The facility is under 24-hour guard and surveillance, which is stored offsite.
- The Data Center includes fire protection, redundant power sources, multiple Internet connections, 24/7 monitoring of all computer hardware, data backups, and offsite storage of backup tapes.
Data Security
- All data is stored on servers behind a firewall. A firewall is a device that allows access to certain computer devices only for specific application uses.
- WealthBook uses a combination of hardware-based firewalls, secure network switches, and load-balancing to ensure safe and secure access to the network. These network security measures ensure that WealthBook clients (and only WealthBook clients) have access to the data they need, at the time they need it, and with the level of security the data demands.
- No data resides on computer devices that can be accessed from the Internet. All data physically resides on a different computer that is not accessible via the Internet.
- All documents are stored in an encrypted manner that prevents anyone from decrypting the document manually. This means only the authenticated user that has access to the file can decrypt the file via the application. In addition, file names are masked. No one can look at the file and identify what type of file it is by its name.
- The WealthBook platform is based on grid architecture using industry standard commercial hardware and software, designed for redundancy, and secured at the operating system level with restricted logins. These server-centric protection measures allow WealthBook to provide a secure platform that maximizes customer investment and minimizes platform downtime.
Session Expiration
If you do not perform any action for 20 minutes, your WealthBook session is automatically terminated. For security, you are signed out of WealthBook and you must sign in again to continue your WealthBook session.
Non-Transactional, “Read-Only” Environment
With WealthBook, all information is “read-only.” Information cannot be accessed or modified through WealthBook’s non-transactional environment. In addition to using robust technology to safeguard member information, we do not store WealthBook user login information, bank account numbers, or bank account login information. Permission-based access to the eVault and to important content is controlled by the user.
Intrusion Control
The WealthBook environment is monitored 24/7 using sophisticated intrusion detection technology.
Password Protection
- Every user has a unique user name and password.
- All passwords are stored in an encrypted format. Only a user knows his or her password.
- If a password is forgotten, a temporary password will be sent to the user via the e-mail address registered in the user’s WealthBook account.
- No one has access to a user’s password. Therefore, it will never be given out over the phone or sent in an e-mail.
VeriSign Secure Site
- All information is transmitted through Secure Socket Layer (SSL), which encrypts the data between the client’s browser and the web server.
- The SSL encryption is 256 bit, and the application cannot be accessed through an unsecured connection.
WealthBook is focused on creating the best user experience possible. In providing that experience, WealthBook understands that clients and advisors must by completely focused on working together and cannot be distracted with data security concerns. With more than 10 years of diligent focus on these five critical areas of security, WealthBook clients can be confident that their wealth management and estate planning will not be constrained or compromised by security concerns.