← Back to site
Trust & Security

Security Overview

Last updated: July 17, 2026

Your clients trust you with their information; you trust us with yours. This page describes how BuyerIntentSystem protects customer data and the lead data processed through the Serious Buyer System™. It supplements our Privacy Policy and forms the basis of the security annex in our Data Processing Agreement.

🔐 Encryption

TLS 1.2+ in transit; encryption at rest via our cloud providers.

👤 Least privilege

Role-based access, MFA on all admin accounts, prompt revocation.

🏢 Vetted infrastructure

Certified cloud providers (ISO 27001 / SOC 2) — we don't run our own servers.

🚨 Incident response

Documented process; customer notification within forty-eight (48) hours of a confirmed breach.

1. Security Governance

2. Data Classification & Minimization

3. Access Control

4. Infrastructure & Application Security

5. Endpoint & Operational Security

6. Vendor & Sub-processor Management

7. Backups & Continuity

8. Incident Response

9. Privacy Compliance

10. Reporting a Vulnerability

If you believe you've found a security vulnerability in our website or tools, please email buyerintentsystem@gmail.com with details and steps to reproduce. We ask that you:

We will acknowledge reports within three (3) business days and won't pursue action against good-faith research conducted within these guidelines.

Questions

Security questionnaires, audit requests (per DPA §10), and any other questions: buyerintentsystem@gmail.com.

Note: This overview describes our current practices and is updated as the program evolves; it is provided for transparency and does not itself create contractual commitments beyond those in the Terms and DPA. Replace bracketed placeholders with your actual providers and timelines before publishing.