Security Policy
FirsTier Bank is dedicated to making information security one of our highest priorities. We utilize the latest software, hardware and other technologies to prevent unauthorized users from accessing our computers systems.
We have implemented many different levels of security including User ID, password, encryption of sensitive data, and others. We also rely on you to take steps to protect the security of electronic information.
User Level Security
There are several components of User Level security that ensure the confidentiality of information sent across the public Internet. The first requires your use of a fully SSL-compliant 128 bit encrypted browser such as Mozilla Firefox, Microsoft Edge or Google Chrome. SSL is an open protocol developed by Netscape that allows a user's browser to establish a secure channel for communicating with our Internet server. SSL utilizes highly effective cryptography techniques between your browser and our server to ensure that the information being passed is authentic, cannot be deciphered, and has not been altered en route. SSL also utilizes a digitally signed certificate which ensures that you are truly communicating with the Online Banking Server and not a third party trying to intercept the transaction. After a secure connection has been established between your browser and our server, you then provide a valid User ID and Security Code to gain access to the services. This information is encrypted, and a request to log on to the system is processed. Although SSL utilizes proven cryptography techniques, it is important to protect your User ID and Security Code from others. You must follow the Security Code parameters we specify at the time you sign up for an Online banking account. We also recommend changing your Security code often. Session time-outs and a limit on the number of logon attempts are examples of other security measures in place to ensure that inappropriate activity is prohibited at the User Level. |
Server Level
All transactions sent to our Banking Server must first pass through a filtering router system. These filtering routers automatically direct the request to the appropriate server after ensuring the access type is through a secured browser and nothing else. The routers verify the source and destination of each network packet, and manage the authorization process of letting packets through. The filtering routers also prohibit all other types of Internet access methods at this point. This process blocks all non-secured activity and defends against inappropriate access to the server. The Banking Server is protected using the latest firewall platform. This platform defends against system intrusions and effectively isolates all but approved customer financial requests. The platform secures the hardware running the online applications and prevents associated attacks against all systems connected to the Banking Server. The system is monitored 24 hours a day, seven days a week for a wide range of anomalies to determine if attempts are being made to breach our security framework. |
Host Level
Once authenticated, the customer is allowed to process authorized online banking transactions using host data. In addition, communication time-outs ensure that the request is received, processed, and delivered within a given period. Any outside attempt to delay or alter the process will fail. Further password encryption techniques are implemented at the host level, as well as additional security logging and another complete physical security layer to protect the host information itself. |
User Responsibilities
While we continue to evaluate and implement the latest improvements in Internet security technology, users of the online banking system also have responsibility for the security of their information and should always follow the recommendations listed below:
|
When you follow these simple security measures, your interaction with the online banking system will be completely confidential.