SECURITY AND COMPLIANCE

At Standard Printing Company and Information Outsource, we take data security very seriously. Our clients trust us with their most sensitive information and we have an obligation to ensure that our production processes, internal controls, security standards provide the highest level of security. We have implemented extensive security measures, and continue to invest in the people, processes, and technology that are designed to ensure the integrity, confidentiality, availability, and security of all client-provided data. Whether we are processing customer billing statements, employee tax statements, business-to-business invoices or collection letters, or any of our other products and services, data security is our top priority.

As part of our ongoing commitment to the confidentiality, integrity and security of our client’s data and in keeping with best practices for data security compliance, Standard Printing Company and Information Outsource conducts periodic Service Organization Control (SOC) audits to assess our internal controls. Specifically, we conduct SOC 2 Type-2 audits which are based upon the AICPA Trust Principles and controls related to Security, Confidentiality, and Availability. Our SOC Audit Reports in alignment with the services provided are available to clients upon request.

As a result of these internal controls, we have a number of processes designed to protect your data.  Every customer receives a unique username and password to our secure FTP site and has access to only their directory. For an additional level of security, we maintain a locked server room and require user authentication on all workstations with no guest accounts. Firewall protection exists on all of our servers, as well as scheduled clearing of data files. As an extra precaution, data clearing is done once per minute on the web server, and once data is cleared, it is moved to the Production Servers, where it is identified and processed.