Effective Date: November 2, 2025 • Last Updated: November 2, 2025
1. Data Security Practices
Encryption
- AES-256 encryption for stored data.
- TLS 1.2 or newer for network communications.
- Encrypted backups and controlled infrastructure.
Authentication & Access Control
- Multi-factor authentication for privileged access.
- Role-based access permissions.
- Session controls and monitoring.
2. Regulatory and Industry Requirements
Quick1099’s current public documentation references IRS e-file provider requirements, federal tax-information safeguards, financial privacy and security obligations, applicable state privacy laws, and state filing requirements.
3. Employee and Vendor Controls
- Access to sensitive information is limited to authorized personnel.
- Employees and vendors are expected to follow confidentiality and security requirements.
- Service providers must use safeguards appropriate to the data they handle.
4. Incident Response
Potential incidents are investigated, contained, documented, and remediated. Affected users and authorities are notified when required by applicable law.
5. Data Retention & Destruction
Tax data is retained for service and legal requirements, often up to seven years depending on the record and applicable rule. Data is securely deleted when it is no longer required.
6. Your Role in Security
- Use strong, unique passwords.
- Do not share login credentials.
- Log out on shared devices.
- Report suspicious activity to security@quick1099.com.
7. Commitment to Transparency
Quick1099 reviews its security framework as services, threats, and regulatory expectations evolve. Updated documentation is posted as appropriate.
8. Contact the Security Team
For security or compliance questions, email security@quick1099.com.
