Security
Your data security is our top priority. Learn how we protect your information.
Our Commitment to Security
At VBRBSA, security isn't an afterthought — it's built into everything we do. We understand that our products handle sensitive information, from medical records in ConsultorioWeb to personal finances in FinnApp.AI.
We implement industry-leading security practices to ensure your data remains protected, private, and under your control.
Encrypted
Data encrypted at rest and in transit
Protected
Multi-layer security architecture
Monitored
24/7 security monitoring
Audited
Regular security assessments
Security Features
Data Encryption
- In Transit: TLS 1.2+ for all connections
- At Rest: AES-256 encryption
- Passwords: bcrypt hashing with salt
Infrastructure Security
- Cloud: Microsoft Azure enterprise infrastructure
- Network: Firewalls and intrusion detection
- Redundancy: Multiple availability zones
Access Controls
- Authentication: Secure login with session management
- Authorization: Role-based access controls
- Logging: Comprehensive access audit trails
Application Security
- Secure coding practices
- Input validation and sanitization
- Protection against OWASP Top 10
Data Backup
- Automated daily backups
- Encrypted backup storage
- Disaster recovery procedures
Operational Security
- Employee security training
- Background checks for team members
- Incident response procedures
Product Security
ConsultorioWeb Security
ConsultorioWeb handles sensitive medical data and implements additional security measures:
- Data Isolation: Each healthcare provider's data is logically isolated
- Access Logging: Complete audit trails of all data access
- Session Security: Automatic session timeout and secure session handling
- Data Retention: Configurable retention policies
- Export Controls: Secure data export mechanisms
Healthcare providers are responsible for maintaining their own compliance with applicable healthcare regulations.
FinnApp.AI Security
FinnApp.AI protects your financial data with these measures:
- No Bank Connections: We never access your bank accounts
- Manual Entry: All data is entered by you, giving you full control
- Encrypted Storage: All financial data encrypted at rest
- Privacy by Design: Minimal data collection philosophy
- AI Processing: AI analysis performed securely without data sharing
Your financial data is never sold or shared with third parties.
Our Security Practices
- Security requirements in design phase
- Code reviews with security focus
- Automated security testing in CI/CD
- Regular dependency updates
- Regular security assessments
- Vulnerability scanning
- Patch management process
- Third-party security reviews
- 24/7 monitoring and alerting
- Documented incident response plan
- Rapid response team
- User notification procedures for breaches
- Background checks for all team members
- Regular security awareness training
- Principle of least privilege access
- Secure workstation policies
Report a Security Issue
Found a security vulnerability? We appreciate responsible disclosure.
If you discover a security issue in any of our products or services, please report it to us immediately. We take all security reports seriously and will investigate promptly.
Security Contact
Email: info@vbrbsa.com
Please include detailed information about the vulnerability, steps to reproduce, and your contact information.