Security Policy

Effective Date: November 12, 2025
Company Name: ZhyDen
Address: 5555 Glenridge Connector, Suite 200, Atlanta, GA 30342
Phone: (470) 924-2422
Email: privacy@zhyden.com
Website: www.ZhyDen.com

1. Commitment to Data Security

At ZhyDen, protecting your personal and business information is our top priority. We follow strict administrative, technical, and physical safeguards to secure all data entrusted to us. Our goal is to maintain the confidentiality, integrity, and availability of your information at every stage — from data collection to processing, transmission, and storage.

2. Our Security Framework

We base our data protection program on industry standards and regulatory guidance, including:

  • Gramm-Leach-Bliley Act (GLBA) and FTC Safeguards Rule
  • NIST Cybersecurity Framework (NIST CSF)
  • PCI DSS (Payment Card Industry Data Security Standards) for payment and merchant processing
  • SOC 2 and ISO 27001 principles for third-party systems

These frameworks guide how we design, monitor, and improve our security controls.

3. How We Protect Your Information

ZhyDen uses multiple layers of protection to defend your information against unauthorized access, alteration, or disclosure:

A. Administrative Safeguards

  • Employee background checks and security training programs
  • Role-based access controls and least-privilege policies
  • Confidentiality agreements for all staff and contractors
  • Continuous monitoring and internal audits of data handling practices

 

B. Technical Safeguards

  • 256-bit SSL/TLS encryption for all website and data transmissions
  • Firewalls and intrusion detection systems (IDS/IPS) to monitor network traffic
  • Multi-factor authentication (MFA) for internal systems and lender portals
  • Data encryption at rest using AES-256 standards
  • Regular vulnerability scans, penetration testing, and patch management

 

C. Physical Safeguards

  • Restricted access to secure data centers and office equipment
  • Locked server rooms and video surveillance
  • Secure document disposal (shredding and certified destruction)

4. Vendor and Third-Party Security

ZhyDen partners only with verified third-party vendors that meet strict data security standards. Each partner — including lenders, processors, and analytics providers — is required to:

  • Maintain SOC 2 or equivalent compliance
  • Encrypt and protect all transmitted data
  • Sign confidentiality and data processing agreements
  • Limit data use strictly to approved business purposes


We regularly review vendor performance and terminate relationships with partners who fail to meet our security or compliance requirements.

5. Data Breach Response

In the unlikely event of a data breach or unauthorized disclosure, ZhyDen will:

  1. Immediately activate its Incident Response Plan
  2. Contain and assess the impact of the breach
  3. Notify affected individuals and regulators as required by law
  4. Cooperate fully with investigative authorities
  5. Implement corrective actions to prevent recurrence

6. Customer Responsibilities

While we work hard to protect your information, you also play a key role in security. We encourage you to:

  • Use strong, unique passwords and update them regularly
  • Avoid sharing login credentials or sensitive information over unsecured channels
  • Access our services only through official ZhyDen websites or verified emails
  • Contact us immediately at privacy@zhyden.com if you suspect unauthorized access

7. Continuous Improvement

Cybersecurity is an ongoing process. ZhyDen continuously evaluates and updates its policies, encryption protocols, and defense systems to adapt to evolving threats and regulatory requirements.

We also perform annual security assessments, third-party audits, and employee security refreshers to maintain the highest standards of protection.

7. Questions or Concerns

If you have any questions about this notice or your privacy rights, please contact our Privacy Compliance Team:

📍 5555 Glenridge Connector, Suite 200, Atlanta, GA 30342
📧 privacy@zhyden.com
📞 (470) 924-2422