 |
|
 |
Friday, May 09, 2008 |
|
|
|
Security
AMERICAN BANK'S ONLINE SECURITY OVERVIEW
Safety is our focus
American Bank is pleased to offer online banking and bill payment services. We make every effort to protect your online information by using the security built into your browser in combination with our own security infrastructure.
Our Internet banking system brings together a combination of security technologies to protect data, you, and the Bank. Our system features password-controlled system entry, a VeriSign-issued Digital ID for the Bank's server, the Secure Sockets Layer (SSL) protocol for data encryption, and a firewall to regulate the inflow and outflow of server traffic.
While we have taken extensive steps to enhance the security of your private financial information, we felt it important to share with you helpful hints you can use to enhance security when you access the Internet. Click here to learn more.
pcbanker.com is a VeriSign Secure Site
American Bank has registered our secure Web sites with VeriSign and use VeriSign Server IDs. VeriSign Server IDs enable you to verify the authenticity of our secure Web site and to communicate with our Web site securely via SSL (Secure Sockets Layer) encryption. SSL encryption is designed to protect confidential information (e.g., credit card numbers, online forms, and financial data) from unauthorized disclosure while in transit from your computer to ours.
We encourage you to "click" at any time on the VeriSign logo located on the left side or within the footer of each page on our site in order to verify that:
Secure Access and Verification of User Authenticity
To begin a session with our Internet banking system, you are required to enter a unique Sign-On ID and Password. Upon successful sign-on, the Digital ID from VeriSign authenticates your computer's identity and a secure socket layer connection is established between your computer and the Bank.
In addition, in an effort to further protect your personal account information, we have implemented two forms of multi-factor authentication - pcbanker SecurID tokens and Challenge Questions - one of which you must choose in order to access your accounts online with pcbanker. The pcbanker SecurID Token displays a string of randomly generated, unique digits on a small screen that changes every 60 seconds. By entering this number during the sign-on process, you prove that you are in possession of the device. During the sign-on process, the number you entered is verified as the number that should be displayed on your device at that time. If the numbers match and your password is correct, you are authenticated and granted access to your accounts. Upon signing on to pcbanker and selecting the Challenge Questions option, a list of pre-chosen Challenge Questions will be displayed. You will be required to choose a minimum of five (5) questions for which you must provide the correct answer. Once you have successfully set-up your questions, one or more randomly selected Challenge Questions will displayed each time you sign-on to pcbanker. If you answer the question successfully, you will be granted access to your accounts. Click here to learn more about multi-factor authentication and the two methods we have available.
Our Internet banking system allows three (3) invalid sign-on attempts before preventing a potential user from further sign-on attempts. After three unsuccessful sign-on attempts, the system locks the potential user out, requiring the Bank to issue a replacement Password, which will be issued only by U.S. Mail to the address we have on file for you.
Secure Data Transfer
Once the server session is established, the user and the server are in a secure environment. Data traveling between the user and the server is encrypted using the Secure Sockets Layer (SSL) protocol. An encrypted SSL connection requires all information sent between a client and a server to be encrypted by the sending software and decrypted by the receiving software, thus providing a high degree of confidentiality. Moreover, an encrypted SSL connection is equipped with a mechanism for detecting tampering - that is, for automatically determining whether data sent over the encrypted connection has been altered in transit.
Other Security Measures
As part of American Bank's effort to limit access to its servers to authorized users performing appropriate functions, American Bank takes several measures.
1. Network Security and Monitoring
Electronic requests received over the Internet by American Bank are subject to monitoring and validation for authenticity and appropriateness.
Electronic requests are filtered through a combination of computer hardware and software designed to protect against inappropriate requests. This is accomplished by filtering Internet traffic and allowing only the traffic that is necessary to send acceptable data requests, such as retrieving web pages or sending inquiries, to access the Bank's servers. We also monitor Internet traffic for suspicious or potentially harmful activity and take appropriate actions to prevent such traffic. These actions may include the implementation of restrictions that prevent access to pcbanker.com from an IP network that services specific high-risk geographical areas.
2. Termination of Inactive Connections
Our Internet banking system will terminate your Internet banking session after a set period of time if you are not actively using the system.
3. Display of Information
Your Password, and certain other private information, will never be displayed on your computer screen or, after the initial registration, in any form of correspondence with American Bank. In addition, our Internet banking system encrypts stored password files and disables passwords that haven't been used by a customer in 90 days.
4. Your Browser's Security
We require the use of a secure browser with 128-bit encryption to access account information and perform transactions. Be sure to check your web browser to determine if it has 128-bit encryption by clicking on "Help" and "About" in your browser's menu.
If you are not using one of these browsers, or if you feel your browser does not meet the 128-bit encryption security requirements of American Bank, you can download an upgraded browser by visiting the Internet browser's web site.
Remember that once you've downloaded the proper browser, you must install it on your computer. Follow the browser manufacturer's instructions that appear on your screen.
Secure browsers employ secure sockets layer (SSL) technology to communicate with servers. This technology encrypts-or scrambles-your account information in order to prevent anyone other than the Bank from reading it.
Your Responsibility
While American Bank takes steps to protect the confidentiality of your online information, we can't do it alone. You also share in the responsibility for the security of your account information and should always follow the recommendations listed below.
We look forward to serving your online banking and bill payment needs both today and into the future - securely!
Check our Security FAQ for more information regarding online security.
|
|
|
|
|
| This page was retrieved at 10:26:45 AM on May 9, 2008 |
 |
|
|
|
|