EU-hosted, encrypted, audited. Full security.

IT security and data protection

Polski Związek Zarządzania Wierzytelnościami
Związek Przedsiębiorstw Finansowych w Polsce
Polski Związek Instytucji Pożyczkowych
Fin Tech Poland
Gdansk
Polski Związek Zarządzania Wierzytelnościami
Związek Przedsiębiorstw Finansowych w Polsce
Polski Związek Instytucji Pożyczkowych
Fin Tech Poland
Gdansk
Polski Związek Zarządzania Wierzytelnościami
Związek Przedsiębiorstw Finansowych w Polsce
Polski Związek Instytucji Pożyczkowych
Fin Tech Poland
Gdansk
Polski Związek Zarządzania Wierzytelnościami
Związek Przedsiębiorstw Finansowych w Polsce
Polski Związek Instytucji Pożyczkowych
Fin Tech Poland
Gdansk

How BidFinance takes care of its security policy

2-factor authentication (2FA)

Access to BidFinance is secured by a two-factor authentication (2FA) mechanism and authorizations provided by the Auth0 (Identity as a Service) platform.

Cloud data backup

We ensure full data security using advanced IT solutions based on the Microsoft Azure platform.

Infrastructure independence

The Platform does not require any integration with the Partner's systems and infrastructure, so there is no risk of gaining unauthorized access to the Partner's systems via the Platform.

OWASP Software Standard

The system is secured against security incidents in accordance with OWASP guidelines.

Encryption

Communication with the BidFinance system takes place securely using HTTPS encryption mechanisms

External security auditor

The platform is regularly tested by an independent entity specializing in penetration testing (once every 2 years and after each significant system release).

Setting a new benchmark for debt portfolio trading

BidFinance combines transparency, security, and advanced analytics to redefine how institutions buy and sell debt portfolios — faster, safer, and with complete market insight.

Transparency

We guarantee transparency and give full control over the process of selling debt portfolios. After each auction, we send a detailed report on the auction results.

Security

We ensure full data security using advanced IT solutions based on the Microsoft Azure platform.

Constant support

We provide constant support in communication between sellers and buyers, which speeds up the entire tender process.

Access to VDR

We provide access to the necessary documentation needed to value debt portfolios in one place.

Public Q&A

We provide a public, anonymised Q&A, thanks to which buyers obtain answers to their questions, ensuring information symmetry.

Market Intelligence

Take part in auctions and gain access to aggregate data on the debt portfolio trading market.

IT stability and security thanks to reliable partnerships

BidFinance is hosted on Microsoft Azure Cloud, widely used by European financial systems and accepted by most EU banks, with ISO-certified security.

How BidFinance maintains its data storage policy

No personal data processing

BidFinance does not store or process personal data of clients (debtors). All data is anonymised on the Partner's side before being added to the Platform.

Minimal data usage

The platform stores the financial parameters of debts and their history, as well as loan documentation templates.

Flexible support

The exact scope of data transferred is each time agreed with the Partner and depends on his decision and on the type of portfolio, product, stage of affairs, security, etc.

White and blocklist

The Partner is responsible for approving all entities allowed to participate in the auction. Partner can clearly define who has access to each specific auction.

Data transmission security

The data is transferred only by manual upload of files by the Partner via the Platform.

Cloud security

Data is stored in the Microsoft Azure cloud with guaranteed storage within the EU.

BidFinance partner verification process

  • BidFinance is a web application accessible via a standard web browser.
  • BidFinance is a B2B platform; the trading environment is not available to anonymous internet users.
  • Only employees authorized by the Partner institution receive accounts and access to the Platform.

We constantly monitor the changing law

Observing regulatory changes important for companies from the financial and technological sectors allows us to quickly react and adapt to security needs. That's why we keep up to date with these legislative initiatives:

The European Union Directive NIS2

(known in Poland as NCSS) covers, among others, strengthening cybersecurity resilience.

DORA (ang. Digital Operational Resilience Act)

establishes uniform requirements for the security of networks and IT systems in the financial sector and for key ICT service providers who provide ICT (Information and Communication Technologies) services to the financial sector.

Let's connect and discuss your next portfolio transaction

Have questions about selling, buying or servicing debt portfolios? Our regional managers will help you with platform access, auction setup and onboarding.

Contact us

LinkedInLinkedIn
Meet the TeamMeet the Team
Emailcontact@bidfinance.pl