Compliance
General Information
CSF International, Inc.
1629 Barber Road
Sarasota, Florida 34240-9392
United States
941-379-0881 Tel
941-371-5223 Fax
info@CSFi.com
www.csfi.com
Financials
CSF International (CSFi) is a privately-held company and as such does not publish its financials for public knowledge. CSFi maintains a D&B number (D-U-N-S #03-749-8151) where information on the company's credit history and viability may be obtained.
Disaster Recovery and Business Continuity
A full disaster recovery center is located in Mumbai, India supplemented by multiple off-site storage facilities in the USA. In the event of a disaster, eblast notices will be sent to our customers using our corporation's global address list. Support services will continue from the Internet using our contingency system(s). Coding services will continue after source code is restored to the new systems.
Pandemic Plan
In the event of a pandemic, normal business operations will be performed using multiple pre-established home-based remote monitoring tools such as LogMeIn and GoToMeeting. These tools enable employees to work from home, conduct conference call and access CSFi International's internal systems for development, testing and customer support as if they were in the office. Other CSFi systems (such as web support) are Internet based and accessible through web browsers from home. Staff are also able to communicate with one another using a combination of other pre-established communication channels such as Blackberry chat.
Escrow
Escrow services for CSFi source code are offered to each end user and managed by Iron Mountain. Periodic software deposits are made on behalf of those who subscribe to the escrow service. In the unlikely event that CSFi ceases business operations, Iron Mountain would be notified that the escrow deposits should be distributed to the subscribed end users.
Insurance
The company has property and liability insurance, for each occurrence, with the Colony Insurance Company in addition to an umbrella policy. The policy declarations page can be accessed by clicking here.
Litigation and Complaints
At the time of this publication, there were no complaints or litigation against CSF International.
Employee Screening
Employees are screened prior to their employment with CSFi including a full background check including any criminal convictions and an OFAC/Global Terror Watchlist search is performed by the Corra Group (www.corragroup.com). Each new employee also receives an employee handlbook with corporate policies and procedures that they agree to follow. As a condition of employment, each employee must provide their written acknowledgment that they agree to the policies and procedures contained in the employee handbook and submit to the full background check. Each employee must also sign a non-disclosure agreement. In the event that an employee discontinues employment with CSFi, a checklist of departure items must be completed and signed prior to discontinuation of employment.
Operations & Control Procedures
We log and verify receipt, shipment and checkout of all transportable data media. Our programmers use version control software as an integral part of our change control process.
Security - Information
Encryption key and certificate handling is always conducted by multiple employees. Customers are instructed to send sensitive data over our encrypted FTP server and not through email. Windows updates are applied to all PCs when notified of updates. Server updates are done after the systems are fully backed up and the the updates are applied. Each user session times out after a specified period of inactivity. All email is filtered through a third party performing two virus checks and 98% of SPAM is eliminated. All desktop PCs are running anti-virus software which gets updated daily plus the installed versions of OS all have their own internal firewalls.
Security - Network
All systems that process or store sensitive data are isolated and proteced by firewalls. All external connections are also secured by firewalls. Firewall logs are reviewed daily. If an intrusion is detected, the firewall sends an email alert to the company's IT manager's personal phone.
Security - Physical Premises
The premises are equipped with UPS systems to protect servers and workstations from power spikes and extended power outages. Special fire extinguishing systems are employed to retard and extinguish fire. A state-of-the-art, monitored security system with motion detectors secures the premises against unauthorized intrusion. Each employee has an individual entry code for monitoring and auditing purposes.
SAS70
As CSFi does not host or process data belonging to our customers and is not operating as a service organization, we do not participate or obtain a SAS70 audit and certification.
PA-DSS
Compliance testing for PA-DSS certification has been completed. For more information concerning PA-DSS compliance, please click here .
PCI DSS
For more information concerning PCI DSS compliance, please click here.
Town & Country Bank selects EZswitch® 2010 (Plus)
February 3, 2012
Ravenna, NE: Town & Country Bank has selected EZswitch® 2010 to meet their future ATM/debit on-line interface needs. The solution will include an interface to the NETS network and Precision core banking system. An on-line card maintenance (OLCM) interface and transmittal of a card maintenance file will support single point of card maintenance entry.
Transact Gateway Services selects SWITCHWARE® 3.12
February 3, 2012
St. Petersburg, FL: Transact Gateway Services (TGS) has selected SWITCHWARE 3.12 for their ATM driving, transaction switching, and merchant acquiring services. TGS is an independent service operator (ISO) providing ATM and POS delivery for banks and financial institutions. Using SWITCHWARE 3.12, TGS provides the latest features for transaction processing, fraud prevention, PCI data security and advanced ATM operations.
Athens State Bank selects EZswitch® 2010 (Plus)
January 31, 2012
Athens, IL: Athens State Bank has selected EZswitch® 2010 to meet their future ATM/debit on-line interface needs. The solution will include an interface to the Shazam network and Precision core banking system. An on-line card maintenance (OLCM) interface and transmittal of Shazam's 78E batch plastics file will support single point of card maintenance entry.
United Nations Federal Credit Union chooses FraudBlock
January 19, 2012
Long Island, NY: The United Nations Federal Credit Union (UNFCU) has selected FraudBlock to provide enhanced fraud detection and prevention capabilities not available from their existing fraud combatting solutions. One of the strongest business objectives is to use FraudBlock to provide more control over international ATM and debit transactions through more comprehensive transaction examination and velocity checking.
CSFi enters into new agreements with key business partners
January 6, 2012
Sarasota, FL: CSFi recently entered into new strategic agreements with IBM, MasterCard and Vormetric. CSFi extended its existing OEM/ASL agreement with IBM and its existing MVP participation with MasterCard while entering into a new reseller agreement with Vormetric. The Vormetric relationship will enable CSFi to sell database encryption solutions to its worldwide clientele using Oracle as their relational database.
Click here for more news items.
Cards Middle East
ADNEC
Abu Dhabi, UAE
May 15-16, 2012
Jack Henry Banking Conference
Gaylord Texan
Grapevine, TX
October 16-18, 2012
