Security

Built for enterprise procurement teams handling sensitive financial data.

International supplier payments involve banking credentials, identity documents, tax forms, and wire transfer instructions. Candex treats each of these with the handling controls your enterprise security team expects.

Security Controls

Controls built for financial data at enterprise scale.

Encryption in transit and at rest

All data transmitted between your team, suppliers, and Candex is encrypted using TLS 1.3. Tax forms, banking details, and identity documents are encrypted at rest using AES-256. Keys are managed in a dedicated key management service and rotated on a set schedule.

Role-based access controls

Your team members access only the data and functions their role requires. Approvers see payment requests and compliance status. Administrators manage team access and export audit records. No one has standing access to supplier banking credentials outside of the disbursement workflow.

Supplier document security

W-8 and W-9 forms, KYB identity documents, and beneficial ownership records collected by Candex are stored in isolated, access-controlled document vaults. Suppliers submit documents through an encrypted upload link. Your AP team never handles raw document credentials directly.

Immutable audit logs

Every action on a payment request generates an immutable log entry: who submitted, who approved, what compliance checks ran, what results they returned, and when each disbursement event occurred. Logs cannot be edited or deleted. Available for export at any time for your auditors or legal team.

Data Practices

What data Candex collects, and what it does not.

Candex collects only the data required to process a payment and satisfy compliance obligations. We do not sell supplier data to third parties, use it for marketing purposes, or retain it beyond the period required for regulatory recordkeeping.

  • Supplier banking credentials are used for disbursement only and never stored in plaintext
  • Tax form data is retained for the IRS-required 7-year period, then deleted on a documented schedule
  • Supplier identity documents are stored in isolated access-controlled document vaults
  • No data is shared with third-party marketing or analytics platforms
  • Data residency: all primary data stored in US-based infrastructure, with documented transfer mechanisms for international payments
  • Your AP team can export a full copy of all payment records at any time, in CSV or JSON format

For Your Security Team

What your enterprise security team will want to review.

Enterprise procurement teams typically route Candex through a vendor security assessment before rollout. We support this process directly.

Your security team can request our standard security questionnaire response, a summary of our subprocessor list, data processing agreement terms, and documentation of our access control model. For Enterprise plan customers, we support custom DPA negotiations and can provide a dedicated contact for security review coordination.

Candex operates as a data processor under GDPR for any suppliers in EU jurisdictions. Our data processing agreement covers lawful transfer mechanisms for personal data collected from EU-based suppliers, including W-8 form information and identity verification records.

Contact our team at [email protected] with the subject "Security Review" to begin the vendor assessment process. We typically respond to security questionnaires within three business days.

Questions about our security practices?

Our team works directly with enterprise security and procurement teams through the vendor assessment process.