Data security
ADR Notable’s Security and Compliance Overview
At ADR Notable, safeguarding your data is a top priority. Our software is designed with cutting-edge technologies, robust encryption, and best practices to ensure the highest level of security, performance, and compliance. Below is an overview of our approach to protecting your information.
Cloud Infrastructure and Data Encryption
ADR Notable’s software and databases operate in the Microsoft Azure cloud, leveraging multiple instances for maximum uptime and reliability. Key security features include:
- Data Transmission Encryption: Azure encrypts data during transmission using the latest version of Transport Layer Security (TLS).
- Data Storage Encryption: Data at rest is encrypted with 256-bit Advanced Encryption Standard (AES), the gold standard in data security.
Secure Software Design
ADR Notable was built with security in mind, utilizing industry best practices to minimize risks:
- Database Segmentation: Case data is split across two databases for enhanced protection.
- Field Limitations: Open text fields are truncated to reduce vulnerability.
- Access Point Minimization: Unused access points in software components were eliminated.
- Password Security: All internal system passwords are complex and regularly updated.
- Strict Support Access: Access to case content by ADR Notable support staff is strictly limited to the technical team for customer support and diagnostics. Every access request generates an audit trail for transparency.
Compliance and Role-Based Access
From a compliance perspective, ADR Notable provides:
- Role-Based Access Control (RBAC): Users can restrict support staff from accessing sensitive case information.
- Background Checks: Every ADR Notable employee with administrative system access undergoes a thorough background check.
- Contractor Access Limitations: Contractors are granted access equivalent to a standard customer account, with test data only.
- Two-Factor Authentication (2FA):
- Required for all ADR Notable internal employees.
- Optional for firm users, with settings managed by the Firm Administrator during account setup.
Advanced Security Features
- Secure Delete: Firm Administrators can enable this feature, allowing secure and permanent deletion of sensitive data.
- Third-Party Assessments:
- 2022 (GBQ Partners): Conducted cybersecurity, cloud vulnerability, and web application vulnerability assessments. Changes were implemented to Azure and software based on findings.
- 2023 (Cinnova): Conducted a general application assessment, including:
- Code Base Analysis: Ensured adherence to industry standards.
- Application Optimization: Enhanced usability and performance.
- Scalability and Security Evaluation: Verified the software is scalable and secure.
Insurance Coverage
ADR Notable is covered by Chubb Digitech Enterprise Risk Management Insurance, which includes:
- Tech E&O Coverage:
- $2,000,000 individual claim limit.
- $2,000,000 aggregate claim limit.
Commitment to Continuous Improvement
ADR Notable continuously evaluates and enhances its security posture through rigorous assessments, industry best practices, and advanced tools. By choosing ADR Notable, you can trust that your data is in safe hands, supported by a team committed to protecting your information and ensuring compliance at every step.