Data in your account is securely stored in a hosted server. Backup of data in this server is taken at regular intervals of time to prevent any loss of data. Being a hosted server, your company does not have to worry about monitoring or maintaining it.
The password you choose must be a minimum of 8 characters. It can contain both upper and lower case letters. It must contain one or more digits and can contain any of the following special characters !,@,#,$,%,^,&,*,?,_,~ .
Strength of your password is shown when creating your password in SutiSign. The strengths are as follows: Very Weak - for no characters, Weak - for 1-5 characters, Better - for 6-12 characters, Medium - for 13 and more, Strong and Strongest.
The entire SutiSign solution has been SSL enabled which means, sensitive data such as your username and password are encrypted and sent to the server for verification.
This SSL connection is also applicable when you try to register yourself as a new user of SutiSign. All the information you enter is encrypted and then sent to the server.
To authenticate yourself using your fingerprints, you need to provide your username and password first. The username and password you provide is verified with the one already existing in the database. If verification is successful, the fingerprint authentication screen will pop-up next if not you will be asked to re-authenticate yourself. Scan one of your registered fingers. The fingerprint entered is authenticated against the one stored in the database. If verification is successful you will be given access to SutiSign.
At the time of approving a request, you need to authenticate yourself by providing your password. The password provided is verified against the one already existing in the database. If verification is successful, approval is performed.
If you have chosen the Biometrics at Approval option, the authentication process is as follows:
At the time of approving a Request, you need to authenticate yourself by providing your password first. The password provided is verified against the one already existing in the database. If verification is successful, action you selected is performed otherwise, you will be asked to re-authenticate yourself and the selected action will be cancelled.
SutiSign provides 128 bit encryption using the MD5 algorithm.
Administrator of a SutiSign account can verify signed documents for validity of Digital Signatures in the event that a document's validity is challenged.
In addition to the above security methodologies, strong role based security segregates duties and adds an extra layer of security to SutiSign i.e. each admin of SutiSign has separate and clearly defined set of privileges and actions to perform.