LBC maintains a SOC 2 Type II attestation. Our SOC 2 Type II report is available on our Trust Center.
The Last Business Card prioritizes security at every level. We are committed to the highest standards of data protection, maintaining enterprise-grade security and compliance practices. Our security, privacy, and compliance controls are continuously monitored with Vanta, ensuring ongoing compliance with industry standards.
We hold our team and software development processes to rigorous security standards. All employees complete annual security training to stay up to date on best practices for handling sensitive information. Additionally, we conduct regular network and application penetration testing to provide our customers with confidence that their data remains secure.
All corporate devices at The Last Business Card are centrally managed and secured with mobile device management (MDM) software and anti-malware protection. Our endpoint security is monitored 24/7/365 to ensure continuous protection.
We enforce strict security configurations, including disk encryption, screen lock policies, and regular software updates, to maintain a secure and compliant environment.
The Last Business Card uses Entra ID and OIDC to secure identity and access management. We enforce multi-factor authentication to protect against unauthorized access and enhance security.
Access to applications is granted based on role, ensuring employees have only the permissions necessary for their responsibilities. Upon termination, access is automatically revoked, and any additional access requests must be approved according to predefined security policies.
The Last Business Card ensures all employees receive comprehensive security training during onboarding and annually. New employees also participate in a mandatory live session covering key security principles, while new engineers attend an additional session focused on secure coding practices.
LBC assigns an inherent risk rating to vendors based on their security measures, ensuring that those handling sensitive data or integrating with critical systems meet our security and compliance standards. The assessment considers the following factors:
Vendors with elevated risk profiles may be required to implement additional safeguards or undergo periodic reviews. LBC continuously monitors vendor security postures to mitigate evolving threats and maintain our commitment to data protection and operational integrity.