NBS Programming & Security Standards
We understand that part of serving colleges and universities with best-in-class payment processing services means adhering to the highest security standards and programming protocols. Below is some general information you and your IT team may find helpful. Additional information on our programming and security standards is available upon request.
- File integrity monitoring through a combination of tools
- Unique encryption keys per customer
- File transfers via SCP/SFTP
- Monthly external vulnerability scans
- Quarterly internal vulnerability scans
- Yearly penetration tests by ethical hackers and social engineering
- Open Web Application Security Project (OWASP) programming standards
- Pair programming for quality and security
- Code reviews
- Regular engineer training on current security threats
- Extensive background, credit, and drug testing performed
- Incident response plan simulated on a yearly basis
- Disaster recovery plan executed on a yearly basis
- Application monitoring for uptime and response time