Security Statement
Peracon is the global leader for commercial real estate asset disposition and acquisition,
with over $400 Billion in commercial real estate transactions completed on the Peracon
platform. We are dedicated to the security of our client's information at every
level, and utilize the most advanced available technology for commercial Internet
security to deliver comprehensive protection.
Our system infrastructure is hosted in one of the most secure and disaster-resistant
facilities in the world, with multiple redundant systems at every level, including
self-contained onsite power, instantaneous failover, and geographically dispersed
system monitoring and management. The facility has achieved SAS 70 Type II certification.
On-premise security includes multi-layer security control procedures, including
24-hour onsite security guards, motion detectors, iris scanners, fingerprint readers,
closed-circuit video monitoring, physically locked cabinets, and card-key access.
All instances of our database and application run on servers housed in dedicated
racks, with access permitted only by authorized personnel.
The Peracon network is protected by redundant security appliances delivering enterprise-class
security providing full firewall protection that completely conceals the architecture
of the internal network from the outside world. The Peracon network solution provides
ongoing 24x7x365 management and monitoring; stateful failover capabilities that
ensure resilient network protection for enterprise network environments; and identification
of network users by using stateful Inspection Technology – among the highest
level of security available. Backup media are maintained in secure, separate, access-controlled
facilities only accessible by database administrators, and are rotated to our secure
hosting center every 30 days.
Peracon database and application administrators complete multiple layers of background
check and security audit. All passwords are encrypted where accessed by application
modules. All accesses to our database are audited and monitored, including the IP
address of the accessing party.
Peracon application access is over SSL, at the highest encryption level (256-bit).
Our server certificate is provided and verified by Verisign. Peracon issues “cookies”
only to record encrypted authentication information for the duration of a specific
login session. The session “cookie” does not include the user password.
Peracon does not use “cookies” to store other confidential user and
session information, but instead implements more advanced security methods based
on dynamic data and encrypted session IDs.