FAQ / Security Information
Infinity National Corporate Office Information:
Infinity National Asset Management
3456 Camino Del Rio North, Second Floor
San Diego, CA 92108
(800) 856-2551 Toll Free
(619) 497-1111 Local
(866) 572-4737 Fax
http://www.InfinityNational.com
Services Provided:
Broker Price Opinions (Bulk or Individual)
REO Disposition from Pre-Foreclosure through to Sale
Bank Directed Short Sale Management
In what areas geographically can you provide BPO and REO Service?
Infinity National provides services nationally in the United States.
How long does it take to receive a result after submitting a request for a Broker Price Opinion? Standard BPOs will be delivered to client in 3-5 business days, however, Infinity National does offer both rush service (48) hours, and our immediate priority service in which we attempt to provide same day service for immediate needs.
Can requests be batched, ormust each request be sent in a separate request?
Our system is designed to handle both, and we have automated systems in place for you to send your orders in directly through our technology interface.
What reports are returned in the response and what format are they in?
All BPOs, after processing and quality control, will be available via HTTPS interface and will be exported (If individually by Client), as a .PDF
Is SSL used to protect client data?
Yes
How is authentication performed?
Windows .NET (.ASPX) Web Authentication via HTTPS
Can our company provide for a specific job number to appear on the invoices we receive, which is simply a string of letters and numbers. Is it possible for us to send our job number as part of each request?
Yes, it would be required on our end as well.
How does Infinity Nationalo handle security in general?
Infinity National strategically partners with Default Service Technologies for ALL BPO ordering &processing. Data is NOT kept on site at Infinity National, as Default Service Technologies owns DispoSolutions, our security compliant BPO software package. ALL hosting is done for security purposes at one of the largest hosting facilities in the U.S., Rackspace, U.S. Inc. All answers below relate to this environment.
What certifications does yoru software and hosting provide have? (e.g., SAS 70, ISO, etc.), including information on date received and which functions/business units to which certifications apply.
Ongoing Sercurity Assesment @ Rackspace
* Vulnerability scan tests for more than 3,000 security vulnerabilities within your environment
* Customized security compliance questionnaire extensively reviews compliance requirements for regulations such as:
* Payment Card Industry (PCI) Data Security Standard
* Health Insurance Portability and Accountability Act (HIPAA)
* Sarbanes-Oxley (SOX)
* Gramm-Leach-Bliley Act (GLBA)
* Federal Information Security Management Act (FISMA)
* Statement on Auditing Standards Number 70 (SAS-70)
* Detailed security compliance report that indicates compliance status, prioritizes vulnerabilities and provides recommended courses of action
* Rackspace Security Consultation Service with Rackspace security experts who review your assessment and provides security consultation
Are you compliant with the Gramm-Leach-Bliley Act of 1999 and its implementing regulations, including but not limited to the Interagency Guidelines Establishing Standards for Safeguarding Customer Information (12 CFR 30)?
Our software & Hosting provider has extensive security in place which is compliant!\.
Please provide information on all insurance coverage applicable to the provision of services to Allonhill
General Liability, and non related E&O at Infinity National Offices. We are willing to add our customers as an additional insured and provide additional coverage if necessary
Where is your data center?
Our data center for BPO processing is handled by one of the largest and most secure hosting centers available.
Rackspace U.S., Inc.
5000 Walzem Road
San Antonio, TX 78218
800-961-4454
+1-210-312-4600
210-312-4500
my.rackspace.com
What is the disaster recovery plan/portfolio for your data center?
Our Rackspace / DispoSolutions Disaster Recovery Plan/Portfolio
Host Based Replication Services
Geographically Diverse Replication for Your Mission-critical Server Data
Enterprise Replication Services
Enterprise-class Array Based File and Block Level Replication
* Replicates critical files between Rackspace DCs
* Support for physical & virtualized environments
* Team of certified Replication professionals deploy & support your solution
* Rackspace DC-to-DC Replication for mission critical data stored on dedicated NAS (dNAS) and dedicated SAN (dSAN) devices
* dNAS to dNAS Replication powered by NetApp® NAS & SnapMirror® technologies
* dSAN to dSAN Replication powered by EMC® RPA technology
* Customized replication solutions
* Team of certified NAS and SAN Engineers to design, implement & manage your solution
Rackspace Professional Services
Customized, Comprehensive Disaster Recovery Solutions
* Application, database & full server failover
* DR Plan consulting & testing
* Active/passive failover or geographic load balancing
* Full support for off-site replication to customer managed data center
* Flexible RPO & RTO targets
* Team of certified DR engineers design, deploy & manage your solution
Unmetered Managed Backup
Fully Managed Backup Service Protects Against Data Loss and Corruption
* Off-site tape rotation
* Flexible backup schedules
* Unmetered model means no overages
* Backup Team sets up, configures & manages your solution and performs restores
Are all employees and third parties required to enter confidentiality agreements with Vendor?
All employees have standard contracts with confidentiality. We use NO vendors beside the hosting environment that have any access to our BPO processing system
Is background screening performed on all employees and contractors performing services for Vendor? If so, please describe the scope of the screening.
Standard employee background checks are performed, though any access to the disposolution files is management level only at present.
Please describe all physical security measures (e.g., access controls, security guards, etc.) utilized.
Internal offices, building secured after hours with automatic locks and controls, with very few employees having after hour access. Office suite has 3 entry/exit doors, only one of which is accessible after hours and by digital key code.
Hosted Environment:
• Data center access limited to Rackspace data center technicians
• Biometric scanning for controlled data center access
• Security camera monitoring at all data center locations
• 24x7 onsite staff provides additional protection against unauthorized entry
• Unmarked facilities to help maintain low profile
• Physical security audited by an independent firm
Is an uninterrupted power supply (UPS) utilized at the data center?
There are fully redundant power sources at Rackspace, far beyond UPS.
What anti-virus products are used?
Internally, ESOT Nod32 Antivirus is used. At the server level, Rackspace provides 24x7x365 protection by SophosLabs, Sophos’s global network threat analysis centers and the smallest update size (typically <5kb) in the industry.