Data Security
Your financial data deserves bank-grade protection
Our Security Commitment
At CukaiMax, we understand that you're trusting us with sensitive financial information. We take this responsibility seriously and have implemented comprehensive security measures to protect your data at every level.
Encryption
Data at Rest
All stored data, including receipts and tax information, is encrypted using AES-256 encryption - the same standard used by banks and government agencies.
Data in Transit
All data transmitted between your device and our servers is protected with TLS 1.3 encryption, ensuring secure communication at all times.
Infrastructure Security
- Cloud Infrastructure - We use enterprise-grade cloud providers with SOC 2 Type II certification
- Network Security - Firewalls, intrusion detection systems, and DDoS protection safeguard our infrastructure
- Regular Backups - Automated encrypted backups ensure your data is never lost
- Geographic Redundancy - Data is replicated across multiple secure locations for reliability
Access Controls
- Authentication - Secure authentication with optional two-factor authentication (2FA)
- Session Management - Automatic session timeouts and secure session handling
- Role-Based Access - Internal access to user data is strictly limited and logged
- Audit Trails - All access to sensitive data is logged and monitored
Security Practices
Regular Security Audits
We conduct regular security assessments and penetration testing to identify and address potential vulnerabilities.
Secure Development
Our development team follows secure coding practices and all code undergoes security review before deployment.
Incident Response
We have established incident response procedures to quickly detect, contain, and remediate any security issues.
Compliance & Certifications
CukaiMax is committed to meeting industry standards and regulatory requirements:
- PDPA (Personal Data Protection Act 2010) compliant
- SOC 2 security controls implementation
- OWASP security best practices
Report a Security Issue
We value the security research community. If you discover a security vulnerability, please report it responsibly to:
Email: privacy@cukaimax.com
Please include detailed information about the vulnerability and steps to reproduce.
Related Policies
- Privacy Policy - How we collect and use your data
- PDPA Compliance - Our compliance with Malaysian data protection law