Products

Resources

Security

Security is an integral part of the deep relationships we build with every platform partner.

Enterprise-grade security and regular audits keep your platform and your Businesses protected. We undergo independent penetration testing and third-party assessments against PCI DSS, ISO, and SOC 2 standards.

Application Security

Protection built into the platform.

Hosting, access, and data handling are controlled at the infrastructure level — not bolted on per integration.

Secure Hosting

JustiFi’s cloud environments run on AWS, with its infrastructure-level security controls behind every deployment.

User Permissions

Assign role-based permissions so each user reaches only what their job requires.

SSO

Single sign-on lets your team manage JustiFi access through the identity provider you already run.

Data Handling

Support for data deletion requests, in full compliance with GDPR.

Encryption

Data in transit is encrypted with TLS 1.2. Data at rest is encrypted with AES.

Monitoring

Continuous testing for vulnerabilities, threats, and penetration by an impartial third party.

How It Works

Continuous security monitoring.

Security posture is a practice, not a certificate. These run on an ongoing cadence.

Penetration Testing

An independent third-party penetration test at least once a year confirms our services’ security posture is uncompromised.

Security Awareness Training

Every member of our team completes security awareness training covering phishing, password management, and other information security topics.

Information Security Program

Our information security program is communicated across the organization and adheres to PCI DSS and SOC 2 standards.

Roles and Responsibilities

Roles and responsibilities for the security program and the protection of customer data are clearly defined and documented.

Third Party Audits

Independent third-party assessments test our security controls on a recurring basis.

Continuous Monitoring

We monitor security and compliance status continuously so gaps and vulnerabilities surface early.

Trust Center

SOC 2, PCI DSS, and ISO certifications, kept current.

Current reports and the full controls list live in the JustiFi Trust Center, powered by Secureframe.

Found something? Tell us.

If you find a potential issue, reporting it helps us implement a fix quickly.