Enterprise-Grade Security for Modern Hospitality
Version 1.0 | Last Updated: January 2025
WiFiIQ, developed by Strategy9 Inc., is committed to providing the highest levels of security and data protection for the hospitality and casino industries. This whitepaper outlines our comprehensive security framework, demonstrating how we protect your guests' data and your business operations.
Independently audited security controls
Enterprise-grade cloud security
Data protected in transit and at rest
Continuous threat detection and response
Meeting global privacy regulations
In today's digital landscape, hotel and casino guests expect seamless WiFi access while trusting you with their personal information. WiFiIQ understands that a security breach can damage your reputation, result in significant financial losses, and erode guest trust built over years.
This whitepaper details how WiFiIQ's security architecture, policies, and procedures work together to protect your business and your guests' data. Whether you're evaluating WiFi captive portal solutions or seeking to understand our security practices, this document provides comprehensive insights into our security framework.
WiFiIQ is built on a defense-in-depth security model that implements multiple layers of protection:
Our infrastructure leverages enterprise-grade security features:
WiFiIQ applications (EmailIQ and PlayerIQ) incorporate security at every level:
Your guest data is protected by multiple layers of encryption and access controls, ensuring confidentiality and integrity at all times.
| Data State | Encryption Method | Key Management |
|---|---|---|
| Data in Transit | TLS 1.2+ encryption for all communications | Industry-standard certificates |
| Data at Rest | AES-256 encryption for databases and file storage | Azure Key Vault with automated rotation |
| Backup Data | Encrypted backups with separate key management | Segregated access controls |
We maintain strict data classification policies:
WiFiIQ implements strict access controls for all personnel:
Your administrative access to WiFiIQ is protected by:
24/7 Monitoring: Our security operations center continuously monitors for threats, ensuring rapid detection and response to any security events.
We employ multiple monitoring systems:
Our comprehensive incident response plan includes:
Response Time Commitment: Critical incidents are addressed within 1 hour of detection.
WiFiIQ has achieved SOC2 Type 1 certification as of January 20, 2025, demonstrating our commitment to:
This certification, conducted by independent auditor Laika Compliance LLC, validates that our security controls are suitably designed to meet our service commitments.
| Regulation | How WiFiIQ Complies |
|---|---|
| GDPR (General Data Protection Regulation) | Data minimization, consent management, right to deletion, data portability |
| CCPA (California Consumer Privacy Act) | Transparent data collection, consumer rights support, opt-out mechanisms |
| PCI DSS (Payment Card Industry) | While we don't process payments, our security standards align with PCI requirements |
| Backup Type | Frequency | Retention Period | Recovery Time Objective |
|---|---|---|---|
| Database Backups | Daily | 30 days | < 4 hours |
| Configuration Backups | Daily | 90 days | < 2 hours |
| System Snapshots | Weekly | 30 days | < 6 hours |
Security is a shared responsibility. While we protect the infrastructure and applications, customers play a crucial role in maintaining overall security.
Get additional security documentation and resources
Download PDF VersionOur security team is here to help. For additional information about our security practices:
Email: security@strategy9.com
Phone: 1-855-838-3999