We understand that we store information on our website about your employees which is highly sensitive, and we take protecting that very seriously.

In fact, we believe that the sensitive data that we store is more secure on our website than it is in the traditional physical filing cabinets in which companies have stored this data historically.

GDPR law requires companies to store personal information as securely as possible, and we are totally committed to doing that to a very high standard.

Our focus is both on maintaining continuous client access to their information and on preventing theft of that information by unauthorised parties (both criminals and “nosy staff” seeking information about their colleagues).

Here is a brief summary of how we look after your data:

  • We encrypt the data transferred between your PC or device and our server.
  • We encrypt the data stored on our servers.
  • We secure our servers: our main servers are based in the UK in a secure location with 24×365 security equipment and staff. We do not disclose this location. Major financial services companies use the same secure location.
  • We back up our data every day to two additional, separate locations, both in the UK, and both with the same high levels of physical security- and both still store only encrypted data.
  • We restrict access to your data only to those of our staff who absolutely need to have it—and we conduct thorough personal background reference checks on all staff who have access to customer data.
  • We conduct multiple electronic checks on our data every day.
  • We pay a specialist cyber security consultancy to test our system for any potential vulnerabilities at least once every year, and to advise us on any new measures we can take to further strengthen our security.
  • We monitor the latest security techniques used by other leading software companies to make sure that we stay on top of all new approaches.