Security & Compliance
Last Updated: September 01 2023
As a regulated financial services provider, regulatory compliance and information security are our top priorities and are built into every part of our business. This is a commitment we keep to our customers, partners, shareholders and other stakeholders.
We conduct business with integrity by applying appropriate governance and internal compliance policies and practices in line with our global regulatory obligations. ZBD continuously monitors regulatory developments, enhances its internal systems of controls and monitors compliance with relevant laws and regulations, including money laundering, terrorist financing, and local data protection requirements.
Key security highlights
Network & Data Security
- ZBD employs the use of cloud native security tooling in AWS such as GuardDuty, KMS, and Inspector to secure data and detect intrusions.
- Core ZBD systems are protected by multi-factor authentication as well as a strong password policy.
Application Security
- ZBD hires external firms to conduct regular penetration tests on our applications. This allows early identification of potential vulnerabilities in the platform.
- ZBD implements secure protocols, such as HTTPS, to protect data in transit as well as leveraging AES-256 for securing data at rest.
- Continuous application and infrastructure scanning are used to detect vulnerable configurations in all environments.
Organizational Security
- ZBD has established internal security policies relating to, among other areas, network security, system design, operational processes, credentialing, passwords, and data classification.
- Understanding that security needs to be top of mind throughout all levels of the organization, all ZBD employees are required to take Security training including anti-fraud and cybercrime awareness.