Designed to protect your data
Understanding that security is paramount when handling customer data, we leverage modern technologies and adhere to industry best practices to ensure the safety and privacy of your data at every stage.
Your data is safely stored
- Encryption: Data is encrypted using modern, robust methods both in transit and at rest (e.g., TLS 1.2/1.3 and AES-256 encryption).
- Secure Infrastructure: QuickBI operates on Google Cloud Platform (GCP), which complies with international security standards, including ISO/IEC 27001.
- Data Storage: Your business data is securely stored in Google BigQuery, located on Google’s European servers.
- Credential Security: Customer credentials are handled with extra care. They are strongly encrypted and never logged.
We follow security best practices at every stage
- Access Control: We apply the principle of least privilege, ensuring only authorized personnel have access.
- Secure Development Practices: We employ continuous integration pipelines and conduct rigorous code reviews to ensure our software is built and maintained securely.
- Risk Management: Our security processes include a comprehensive risk management framework aligned with the OWASP Risk Rating Methodology to identify, assess, and mitigate potential vulnerabilities.
- Incident Management: Comprehensive procedures are in place to ensure swift response to security events.
- Process and Policy Management: Our security processes and documentation are reviewed and updated periodically.
QuickBI is GDPR compliant
- Data Residency: All data is hosted on Google’s secure servers in Europe.
- Selective Data Use: You can exclude sensitive information, such as email addresses and social security numbers, from data imports.
- Data Deletion: We support proper and thorough data deletion processes.
Our platform is built with security at its core
- Patch Management: Regular updates and patching ensure the platform remains secure against emerging vulnerabilities.
- Monitoring and Alerts: Security monitoring includes logs and real-time alerts for potential threats.
- Vetting of Third-Party Tools: All third-party tools undergo a security evaluation before integration.
Our team is committed to security
- Training: Regular security training is mandatory for all employees.
- Policies: Strict internal security policies are enforced across the organization (e.g. mandatory MFAs).
- Hiring Standards: Security competency is a key requirement for software engineers joining our team.
More information
For further details on our data protection practices, please contact us at security@quickbi.io. You can also review our Privacy policy and Terms of service for more information.