-
- Marketplace
- LeGifts
- Campaign
- Redemption
- Login
- Newsletter
- [yith_ywraq_mini_widget_quote]
At RewardsHub, safeguarding your data is our utmost priority. We employ enterprise-grade security measures to ensure the confidentiality, integrity, and availability of your information. Our platform is designed to comply with stringent data protection regulations, including Singapore’s Personal Data Protection Act (PDPA) and global best practices.
RewardsHub implements robust data and application security protocols to uphold data protection standards.
Data Encryption
We employ industry-standard encryption methodologies to secure your information. Data in transit is protected using TLS 1.2 or higher, while data at rest is secured with AES-256-bit encryption, ensuring maximum protection for stored credentials and sensitive information.
Web Application Firewall (WAF)
Our platform is safeguarded by a cutting-edge Web Application Firewall that continuously updates to defend against evolving cyber threats worldwide.
Role-Based Access Control (RBAC)
Access to the RewardsHub Admin Portal is granted based on predefined roles, ensuring that staff members only have access to the information required for their responsibilities, adhering to the principle of least privilege.
Two-Factor Authentication (2FA)
We enforce Two-Factor Authentication (2FA) to add an extra layer of security for system access, mitigating the risks associated with password-based authentication.
Audit Logs
All activities within the admin and customer portals are logged and stored securely, allowing for auditing and investigative purposes in case of unauthorised access or security incidents.
Secure Software Development Lifecycle (SDLC)
RewardsHub integrates rigorous security measures throughout its software development processes, including automated and manual vulnerability assessments.
A secure and resilient infrastructure is essential to ensuring the stability and reliability of the RewardsHub platform.
Amazon Web Services (AWS) Hosting
We host our services on AWS, benefiting from 24/7 security monitoring, biometric access controls, and global compliance certifications.
Vulnerability Management
Regular third-party security assessments, penetration testing, and vulnerability scans are conducted to proactively identify and mitigate security risks.
Domain Name System Security Extensions (DNSSEC)
RewardsHub implements DNSSEC to prevent DNS hijacking attacks, adding an additional security layer to our domain name infrastructure.
Distributed Denial-of-Service (DDoS) Protection
We employ advanced DDoS protection mechanisms to mitigate infrastructure attacks and ensure minimal disruption to our services.
RewardsHub prioritises security at every level of its operations, ensuring compliance with industry best practices.
Employee Security Training
All employees undergo mandatory security training covering information security, data protection, and cybersecurity best practices.
Vendor Risk Management
We conduct comprehensive assessments of third-party vendors to ensure they comply with stringent security and privacy standards.
Continuous Security Monitoring
RewardsHub employs automated security controls to monitor compliance with over 100 internal security standards, ensuring continuous adherence to industry best practices.
We are committed to protecting your personal data in compliance with Singapore’s PDPA and applicable data protection laws.
Data Retention & Deletion
Your personal data is retained only for as long as necessary for operational, legal, and compliance purposes. You may request access to, modification, or deletion of your personal data at any time.
Data Transfers & Security
All data transfers are conducted in accordance with stringent security protocols. We ensure that your data is processed only in jurisdictions that uphold adequate data protection standards.