Proprietary
Licenses
100+

Security Hub

Safeguarding, screening, and proactive security.

 >

Our Security Pillars

Platform Security

We build robust, best-in-class platforms for transferring funds internationally.

Data Security

Our top priority is to keep your, and your clients’, data safe and secure.

Funds Security

We take a multi-pronged approach to keeping funds safe at every
step of the payment journey.

Security Testing

We are constantly testing our services and being tested by external auditors.

Platform Security

  • architecture

    Our architecture is multi-tenant by design and data filters are applied ensuring that access to data is restricted based one's job role and associated access privileges.

  • enchyption

    Data in transit is encrypted using SSL certificates (TLS 1.2) meaning that unauthorized individuals cannot decipher your confidential financial information.

  • hosting provider

    TransferMate use AWS for data hosting services. AWS are ISO27001 and maintain SOC 1 and SOC 2 reports.

  • compliance controls

    Our approach streamlines international payments within a regulated proprietary network, with best-in-class compliance controls embedded within the payment process.

Data
Security

  • data deletion

    We only retain data for as long as is required under regulatory and legislative requirements. Data retention timelines are defined, and procedures are in place to comply with erasure requests from our clients.

  • awareness training

    TransferMate takes the privacy of our clients seriously and complies with all local data protection laws in the jurisdictions where we operate in. Staff undergo mandatory annual training and testing.

  • security data processing activities

    TransferMate is headquartered and registered in Ireland and subject to the General Data Protection Regulation (GDPR) (Regulation (EU) 2016/679). Technical and organizational controls are implemented and maintained as per industry best practice; these controls are externally audited on a bi-annual basis by our ISO27001 auditor.

Funds Security

  • Financial crime prevention

    We have multiple, robust anti-payment fraud protections in place, using AI and automated reporting and flagging processes from automated reporting procedures to human operators.



    We combine an AI-driven anti-money laundering solution capable of operating 24/7 and in near real-time to handle rapidly growing transaction volumes, with human operators who deliver an exceptional customer experience.

  • vendor management

    TransferMate has defined rules for engagement with third parties. Requirements include contracts and due diligence to ensure that services commissioned are from reputable companies that operate in accordance with all applicable industry, regulatory and legislative requirements.

  • sanction screening

    We implement advanced sanction screening protocols for all international payments, examining transactions to identify any involvement with individuals, organizations, or countries subject to economic sanctions. We go a layer above by sanctioning screen any 3rd parties, 3rd party banks and 3rd party countries, as well as the counter-party BIC.

  • real-time risk assessment

    All transactions that go through the TransferMate payment network is subject to real-time assessment, catching potentially fraudulent payments early.

security testing

  • patch management

    A risk-based approach is taken with all critical patches installed within 7 days or less in line with our patch management standard.

  • external audits

    A dedicated audit program is in place with several internal audits completed on a monthly basis and bi-annual external audits completed to ensure conformance of our Information Security Management System with ISO27001.

  • penetration testing

    TransferMate is headquartered and registered in Ireland and subject to the General Data Protection Regulation (GDPR) (Regulation (EU) 2016/679). Technical and organizational controls are implemented and maintained as per industry best practice; these controls are externally audited on a bi-annual basis by our ISO27001 auditor.

  • security incident and event notification

    24 x 7 system monitoring is undertaken by our Security Operations Centre provider. TransferMate has a documented and established incident management procedure with incident severity and points of escalation defined.

Our Compliance Infrastructure

Regulation, compliance and security are the backbone of what we do, ensuring a long-lasting, sustainable global payment network.

HAVE ANY
QUESTIONS?

Get in touch with the team.