Security at Fraud Intercept

Protecting your data with enterprise-grade security. We take security as seriously as the fraud we help you prevent.

SOC 2 Type II
Compliant
PCI DSS
Certified
GDPR
Compliant
ISO 27001
Aligned

Infrastructure Security

  • Cloud Infrastructure: Hosted on SOC 2 certified cloud providers with multi-region redundancy
  • Network Security: WAF, DDoS protection, and intrusion detection systems
  • Access Control: Role-based access, MFA enforcement, and principle of least privilege
  • Monitoring: 24/7 infrastructure monitoring with automated alerting

Data Protection

  • Encryption at Rest: AES-256 encryption for all stored data
  • Encryption in Transit: TLS 1.3 for all API communications
  • API Key Security: SHA-256 hashed storage, never stored in plaintext
  • Data Isolation: Strict tenant separation with Row Level Security (RLS)
  • Backups: Daily encrypted backups with point-in-time recovery

Application Security

  • Secure Development: OWASP Top 10 protection, code reviews, and automated security scanning
  • Authentication: Secure session management with JWT tokens and refresh rotation
  • Rate Limiting: Per-key rate limits to prevent API abuse
  • Input Validation: Strict validation on all API inputs to prevent injection attacks

Compliance & Audits

  • Annual Penetration Testing: Third-party security assessments by certified firms
  • Vulnerability Management: Continuous scanning and remediation SLAs
  • Audit Logging: Comprehensive logs retained for compliance and forensics
  • iGaming Compliance: Designed to support MGA, UKGC, and other regulatory requirements

Incident Response

We maintain a documented incident response plan with defined procedures for:

  • Detection: Automated monitoring and alerting for anomalous activity
  • Response: On-call security team with defined escalation procedures
  • Notification: Customer notification within 72 hours of confirmed breach
  • Recovery: Documented recovery procedures and post-incident reviews

Report a Vulnerability

We appreciate responsible disclosure of security vulnerabilities. If you discover a security issue, please report it to:

fraud.intercept@outlook.com

We commit to acknowledging reports within 24 hours and providing updates on remediation progress.