Data and Security

 The security and privacy of your data is a core part of our business, and is our top priority. This section provides our corporate statement regarding our data security program and the process we follow to ensure our solution is in compliance with best industry practices.

PCI/DSS Compliance

The Payment Card Industry (PCI) Data Security Standard is a worldwide standard for payment card and consumer financial data protection. In order to maintain PCI Compliance, all publicly accessible internet devices and any associated domain(s) hosted by Book4Time have been audited within the past 3 months, and all vulnerabilities categorized as Urgent, Critical, or High severity (Level 3 or greater) are corrected within 72 hours of their discovery.
 
SSL Data Encryption

Book4Time uses Secure Socket Layer (SSL) technology for mutual authentication, data encryption and data integrity. SSL is the industry standard security protocol to encode sensitive information, such as your credit card number. SSL creates a shared digital key, which only lets the sender and the receiver of the transmission scramble or unscramble information.

Local Data and Physical Redundancy

Book4Time customer data is backed up locally to different redundant backup servers nightly.  We maintain redundant web and database servers, fully configured with all software and data, so the in the unlikely event of a failure of any of the main servers, the backup servers will be available, pre-loaded with the most recent production data and software.

Offsite Backups

All Book4Time customer data is also backed up to servers housed in secure locations daily.  Book4Time hosting and storage location is highly secure and includes alarms, controlled access, fire suppressors, redundant bandwidth, and emergency power generators - everything necessary to ensure valuable customer data is always secure. 

Security Vulnerability Scans

Book4Time conducts regular security vulnerability scanning of key network resources, to identify potential security threats.  Should there be any reported security vulnerabilities, they are secured within 72 hours. These security scans ensure that web sites, servers, routers, firewalls and Internet-connected devices are free of known vulnerabilities.