Our Security Commitment
At Mains’l Solutions, protecting our customers’ data is our top priority. We are committed to safeguarding the confidentiality, integrity, and availability of your information.
Trust at Mains’l Solutions
As a solution trusted by numerous agencies throughout the country, the performance and security at Mains’l Solutions is critical. Our product engineering approaches demonstrate a commitment to proven industry standards and best practices, as well as continual monitoring and enhancement. This diligence ensures our capabilities are able to meet the rigorous requirements of both large and small-scale FMS systems. Our performance and security framework include policies, practices and protocols in the following areas:
Our Security Approach
Infrastructure
To maintain fast, reliable, and secure online FMS performance at scale, the Mains’l Solutions cloud operates on commercial-grade web-based infrastructure, such as AWS, where access is highly restricted. Mains’l Solutions users benefit from industrial-strength infrastructure while our team builds platform enhancements, allowing daily financial management services to operate without disruption.
Access Controls
We enforce strict access controls to ensure that only authorized individuals can access systems and customer data. Access is granted based on the principle of least privilege and is aligned with each user’s role and responsibilities. We require strong authentication measures, including multi-factor authentication where applicable, and regularly review access rights to maintain appropriate security.
Secure Practices
All development projects at Mains’l Solutions follow secure development lifecycle principles. Our team enforces compliance internally and periodically schedules penetration tests with external organizations to ensure our tools provide sufficient security.
Encryption
Our data policy enforces the use of local file system encryption by our engineers and limits the persistence of any sensitive data to the strictly required. Customer content is stored in encrypted form in the cloud and on-premise systems, including servers.
Monitoring
Potential attacks are mitigated through built-in services, which defend against the most common, frequently occurring network and transport layer attacks that target applications. These services provide always-on network flow monitoring, which inspects incoming traffic and uses a combination of traffic signatures, anomaly algorithms and other analysis techniques to detect malicious traffic in real-time.
Reliability
Business Continuity and Disaster Recovery
Mains’l Solutions ensures reliability with robust disaster recovery measures for prompt restoration in case of disruption. We use regular backups and recovery procedures for restoring services in the event of unavoidable failures.
Compliance
HIPAA
Mains’l Solutions is committed to safeguarding protected health information (PHI) and align our security and privacy practices with the requirements of the Health Insurance Portability and Accountability Act (HIPAA).
NIST 800-53 Rev. 5 Moderate (In Progress)
We are currently working toward alignment with the NIST SP 800-53 Rev. 5 Moderate control baseline and are actively implementing the necessary administrative, technical, and operational safeguards to meet these standards.
Want to Know More?
Get in touch with a Mains’l Solutions security expert today – ask
questions or discuss security findings directly with a member of the
Mains’l Solutions team.
