Yes. Customer environments and backups run on US-based infrastructure. If your firm has specific data residency requirements, raise them during assessment and we'll document how they're met.
No provider can make your firm compliant by itself — compliance programs include policies, training and processes only your firm controls. What we provide are managed technical controls (MFA, encryption, monitoring, backup) that support and simplify your program, plus documentation you can reference in it.
Environments are logically separated with access controls and network segmentation, and dedicated (fully isolated) environments are available for firms that require them. The right model for your firm is confirmed during assessment.
We operate documented incident response procedures: detection and alerting, containment, investigation, remediation and customer communication. Affected customers are notified with facts and actions — not silence.
Yes. We regularly help customers answer technical questions on cyber-insurance applications and client security questionnaires by documenting the controls in place in their hosted environment.
No, and you should be skeptical of anyone who does. Layered controls substantially reduce risk, and monitoring shortens response time — but security is ongoing risk management, not a one-time guarantee. We'd rather be honest about that and show you the controls.
Secure Cloud Hosting Built for Accounting and Tax Firms. Managed cloud, application hosting, backup and cybersecurity for accounting and tax firms across the US.