Security
Protecting Your Privacy with a Secure Environment Protecting your privacy and your
information is one of our top priorities.
We have taken sophisticated measures to secure your information, as well as our
technology, personnel and physical premises. We take the security and privacy of
your personal information very seriously. It is for this reason that we have partnered
with VeriSign to make our site secure. While there are other companies that provide
Internet security, VeriSign is recognized as the top in the field.
- Building Trust
VeriSign has provided us with a Secure Server ID that confirms we are who we say
we are. A Server ID is the digital equivalent of a business license. It lets you
know that the company you're dealing with is actually what it says it is. In other
words, a third party (VeriSign) is vouching for the authenticity of our service
on the Internet.
As a Certification Authority (CA), VeriSign is responsible for more then 65,000
Secure Server Ids, and they have a rigorous authentication practice. They're standards
are so high, they are the only Certification Authority to have passed an extensive
SAS 70 audit (SAS 70 certifies trusted practices via the American Institute of Certified
Public Accountants). We want to build your trust, and our Secure Server ID is a
big part of that trust.
- Transmitting Personal Information Safely
Working with our technical staff, VeriSign is instrumental in providing us with
the encryption codes that help prevent outside sources from accessing our site.
As a point of reference, a standard ATM system used by banks utilizes a 24-bit encryption;
we use 40-bit encryption. In addition, we also utilize version 3 Secure Socket Layer,
which is the same technology used by banks. If you feel comfortable with the security
involved in using your bankcard, you can feel safe at our site.
VeriSign Secure Server ID technology also uses advanced public-key cryptography.
Public-key cryptography does not use shared keys, which is important for security.
For example, shared key cryptography would be similar to someone sending a coded
message where the sender and the receiver both have to have the same code in order
to read the message. The problem is either one may have shared the code with another
party, or may have left the code lying around where an unknown party could have
access to it. Thus, the security of the message cannot be vouched for. With public-key
cryptography, the public code used to transmit the information is not the same as
the code used to decipher the information. This is called a key-pair and, in the
case of any information sent to us, the other key or "private" key is only located
on our site to further safeguard your personal data. Since no one else has access
to the "private" key, they can't intercept the data sent via the "public" key.
- End to End Security
VeriSign has partnered with Cisco to provide the network hardware. This partnership
eliminates the intrinsic risk involved in bringing in yet another vendor, who may
or may not have as strict a standard as VeriSign. Cisco, as VeriSign's network partner,
has already agreed to VerSign's requirements. For even further Web security, Cisco
also provides network-level encryption, carrier-class authentication, and auditing,
along with high-performance firewalls. The critical point here in how it relates
to you is that, at every point where information is being transmitted, industry
leaders, who stake their reputations on the level of security and privacy they provide,
are handling it.
- Who uses VeriSign?
With headquarters in Mountain View, CA, Verisign is a leading provider of Internet
security to consumers, web sites and businesses alike. Highly respected for their
services, VeriSign was instrumental in securing the net for such companies as Ameritech,
A T & T, Royal Bank of Canada, Visa, Texas Instruments and many others. In addition
to this, they have also formed strategic partnerships with a wide range of companies
including Visa, EDS, Intuit, Netscape, Microsoft, Reuters, AT&T, First Data Corp.,
RSA, Comcast, Network Associates, Softbank, Merrill Lynch, Cisco Systems, Gemplus,
Security Dynamics, Oracle, America Online, AICPA, and Litronic.
- Hallberg Commercial Inc. is a licensee of the TRUSTe Privacy Program.
TRUSTe is an independent, non-profit organization whose mission is to enable individuals
and organizations to establish trusting relationships based on respect for personal
identity and information by promoting the use of fair information practices. Because
this Web site wants to demonstrate its commitment to our users' privacy, it has
agreed to disclose its information practices and have its privacy practices reviewed
or compliance by TRUSTe.
If you have questions or concerns regarding this statement, you should first contact
the Privacy Manager by email at bhallberg@hallbergcommercial.com or by postal mail at Hallberg
Commercial Insurers Inc., 120 W. 22nd Street # 200, Oak Brook, IL 60523-1557. If
you do not receive acknowledgment of your inquiry or your inquiry has not been satisfactorily
addressed, you should then contact TRUSTe at http://www.truste.org/users/users_watchdog.html. TRUSTe
will then serve as a liaison with the Web site to resolve your concerns.
Notice of Privacy Policy and Insurance Information Practices
This Notice of Privacy Policy and Insurance Information Practices is for Hallberg
Commercial Inc. (collectively, the "Company" sometimes referred to as "we" or "us"),
for persons seeking insurance and financial products or services (persons seeking
such information, products or services from us are collectively referred to as "you"
or "your").
Protecting your privacy is one of our top priorities. Our policies are designed
to protect your privacy in accordance with applicable law and the following measures
have been taken to protect information you provide at our Web sites.
We do not collect any nonpublic personal information from a customer without explicitly
requesting that such customer provide such information or until after you complete
the registration process on our Web sites.
These Privacy Policies and Practices are an integral part of the Terms and Conditions
governing the use of our services, whether it be through our Web sites, the U.S.
mail, over the telephone, email and fax as related to information collected on our
website. (The Terms and Conditions also address specific aspects regarding the security
of our Web sites).
Your Financial Information
- Categories of Nonpublic Personal Information that We May Collect
Nonpublic Personal Information is defined as personally identifiable financial information
that is not publicly available. We may collect nonpublic personal information about
you as necessary to provide you with the requested service, including but not limited
to, your name, address, social security number and type of policy purchased, from
the following sources:
- Information that we receive from you on applications and other forms.
- Information about your transactions with us, our affiliates or others.
- Information that we receive from a consumer reporting agency.
- Information that we receive when you visit us through the Internet.
Categories of Parties to Whom We May Disclose Nonpublic Personal Information
Hallberg Commercial does not disclose ANY nonpublic personal health or financial
information, except as permitted or required by law under certain regulatory exceptions.
However, in order to obtain a product through our Web site or call center your information
may be disclosed to a third party product provider for the limited purposes of obtaining
such product (such as applying for a specific insurance policy).
Further, We may disclose certain nonpublic personal financial information that we
collect, as permitted by applicable law, as described above, to companies that provide
services on our behalf or to other third party financial institution marketing partners
with whom we have joint marketing agreements. Hallberg Commercial works with our
marketing partners to fulfill product purchases and market our products where we
have a shared customer relationship. Any company or institution that we disclose
such information to provides for customer data security standards no less stringent
than those of Hallberg Commercial.
We may also disclose nonpublic personal financial information about you to nonaffiliated
third parties as required by law.
We do not make any disclosures to our affiliates of any information that is subject
to the Federal Fair Credit Reporting Act.
We will not disclose any nonpublic personal medical information about you to any
party unless:
- The disclosure is permitted or required by law.
- You have authorized us to disclose the information.
In cases where you may have entered our site through another site, and the frame
around our site matches the host company's look and feel, you are actually on our
Web site and we control the collection of information, and privacy and security
is based on our policy as described in this document.
Opt-Out of Receiving Communication
You may from time to time receive email communication from us, such as but not limited
to acknowledgement of a request for a quote, starting an application, special offers
or products, customer satisfaction surveys and informational newsletters. If you
do not want to receive satisfaction surveys from us and/or information on additional
products and services that we may offer, simply contact us by email at bhallberg@hallbergcommercial.com or contact us by mail at
Privacy Manager, Hallberg Commercial Insurers Inc., 120 W. 22ND Street # 200, Oak
Brook, IL 60523-1557. Please note, however, that you will still receive communications
from Hallberg Commercial regarding your insurance application or policy.
Changes to Our Notice of Privacy Policy and Insurance Information Practices
We reserve the right to change our privacy policies and insurance information practices.
If we make any material changes to our policies or practices we will post a revised
copy of the notice on our Web site and will email you of any changes, where you
have provided a valid email address.
We also reserve the right to transfer your information in connection with a sale,
merger, transfer, exchange or other disposition (whether of assets, stock or otherwise)
of all or a portion of a business of Hallberg Financial Inc. or its affiliates.
We will notify you of such transfer via the methods outlined in the preceding paragraph.
|
|