Privacy & Security

Our NexusIQ platform leverages the latest safety and security features to ensure privacy and protection

Bank-grade information security program

Empact is based on the Force.com platform from Salesforce, which banks already utilize
Comprehensive info-sec program including administrative, technical, physical, organizational structure, operational safeguards and other security measures according to industry audit requirements
SOC 2 Type 1 complete; SOC 2 Type II in-process
Automatic data back up plus optional secondary data backup
If platform ever went down, no immediate impact to day-to-day operations

Secure management of personally identifiable information (PII)

We only collect minimum required PII from project contractors to ensure PWA compliance (unique identifier), not social security numbers. We don’t use any bank client data, and we do not use third party subprocessors
Empact controls access to PII to required employees providing compliance management services
Data encryption in transit: Empact uses SSL (Secure Sockets Layer) to encrypt data from contractors to Empact application
Data encryption at rest: Empact encrypts key Personnel Information in our application database

Learn more about our secure compliance platform

Our compliance management tools are built upon the same infrastructure that is utilized by banks and utilities. Want to learn more?