Surpass competition
To accelerate revenue generation in a competitive landscape, swift action is essential. It’s crucial to have an operating model that is both agile and quick to market.
Fininly’s approach ensures a seamless, uninterrupted pathway to innovation and rapid market entry.
Security & privacy at Fininly.
Fininly’s security-driven approach ensures the strongest privacy and security standards, with optimised controls and processes across everything we do.
Fininly is GDPR compliant as protection of personal data is a top priority.
End of 2024, Fininly will be certified services under the Data Privacy Framework (DPF) Program.
Fininly aims to get ISO certified in the 4th quarter of 2024 and to exceed the international standards for our information security management system .
As of January 17, 2025, Fininly's software enables our customers to comply with the Digital Operational Resilience Act.
"We are committed to continually raising Fininly's security posture by complying with the highest security standards. We do this to strengthen the resilience of the organisation and our solution against an evolving landscape."
Arthur van Cadsand
Chief Executive Officer
Security-first and privacy in every detail
Fininly is powered by enterprise-grade security. We're trusted by our customers to meet and exceed industry standards and deliver security across every part of our platform.
Backup
Data is backed up continuously on Microsoft Azure. These backups are encrypted and data retention rules apply.
Application security
Penetration tests and continuous scanning for vulnerabilities on our code following the SDL methodology.
Disaster recovery
Fininly is deployed in Microsoft Azure data centers. Disaster recovery testing is carried out regularly.
ID & access management
Accessed through SSO or email authentication. Fininly implements role-based access control and access to the platform is logged.
Data security
Data encrypted both at rest and in transit, and stored in Microsoft Azure data centers in either Europe, the USA, Australia or Canada.
Incident management
Incident Management Policy with defined processes, roles, communications, responsibilities and procedures for detection and escalation.
Physical security
Microsoft Azure is responsible for the physical security of their data center sites, while physical controls are implemented.
Organisational security
Fininly has a specific Information Security department. Employees are trained and pre-employment checks are carried out.
Privacy
Fininly maintains policies, standards and procedures for privacy. Please see our privacy FAQ page for more details.