# Security at Policygenius

## Your security is our priority

We care about keeping your information safe, so we’ve invested in the security technology and practices to help us do just that.

### Data security

Your data is encrypted wherever it’s stored and whenever it leaves our systems.

### Top technology

We utilize trusted security products.

### Information safeguards

We employ security measures like SSO and multi-factor authentication to verify identities of Policygenius employees who have access to your private information, and access is limited to the employees who need it to do their jobs.

### Proactive security testing

We partner with third-party experts to “hack” our system to identify gaps and mitigate security threats.

### Real-time monitoring

Our information security team is notified of suspicious activity the moment it’s detected, enabling rapid response times.

### Vetted security partners

We screen vendors to determine whether they abide by specific security standards for an added layer of defense.

### SOC 2 Type II Validation

Policygenius has obtained a SOC 2 Type II report in line with standards set forth by the American Institute of CPAs, which provides validation by an independent, third-party auditor that our security program meets industry standards to keep your data protected.

[Read more](https://us.aicpa.org/interestareas/frc/assuranceadvisoryservices/serviceorganization-smanagement)

## How to report a security issue

If you identify a security bug or vulnerability or suspect a potential security incident, please report these findings by email to [security@policygenius.com](mailto:security@policygenius.com).

_For more about how we handle data security and privacy, check out our_ [_Privacy Policy_](https://www.policygenius.com/about/privacy/)_.

Questions about this page? Email us at [editorial@policygenius.com](mailto:editorial@policygenius.com).
