Security Practices Statement

At IDRecon LLC, safeguarding the sensitive data and trust of our criminal justice partners is a top priority. Our security practices are built on rigorous industry standards, ensuring the confidentiality, integrity, and availability of the information entrusted to us.

Data Protection and Privacy

  • We comply with the Criminal Justice Information Services (CJIS) Security Policy to ensure data handling and access meet or exceed federal standards.
  • All data is encrypted both in transit and at rest using AES-256 encryption and TLS 1.3 protocols.
  • Access to sensitive information is restricted to authorized personnel only, employing least-privilege principles and strict role-based access controls.

Infrastructure and Application Security

  • Our systems are hosted on secure, CJIS-compliant cloud infrastructure.
  • Regular penetration testing and vulnerability assessments are conducted to identify and address potential security risks.
  • Advanced firewalls and intrusion detection systems are in place to monitor and mitigate unauthorized access attempts.

User Authentication

  • Multi-factor authentication (MFA) is mandatory for all user accounts to ensure robust access controls.
  • Active Directory integration supports secure and centralized user authentication, enhancing identity management.

Monitoring and Logging

  • Comprehensive logging tracks system activity, with logs stored securely and monitored for suspicious behavior.
  • Fail2Ban and IP-based geo-restrictions protect against unauthorized login attempts and access from prohibited regions.

Incident Response

  • A dedicated incident response team is prepared to respond swiftly to security threats or data breaches.
  • We maintain a robust incident response plan, including notification procedures to inform affected users promptly and transparently.

Compliance and Training

  • All employees undergo regular training on cybersecurity best practices and CJIS compliance.
  • We regularly audit our processes and systems to ensure alignment with applicable laws and regulations.

Customer Support

We offer continuous support to assist users in maintaining secure operations. Our team is readily available to address concerns related to system security or data protection.

IDRecon LLC is committed to maintaining the highest security standards, giving our partners peace of mind as they conduct critical investigations. For more information, contact us at support@idrecon.net.


Verify the Authenticity of Our Website

Your online security is important to us. Follow these simple steps to ensure you're visiting the official IDRecon LLC website securely.

Check the URL

  • Always type https://idrecon.net directly into your browser to avoid phishing sites.
  • Confirm that the URL starts with "https://" and not "http://" The "s" stands for secure and indicates an encrypted connection.

Look for the Padlock Icon

  • All major browsers (Chrome, Firefox, Edge, Safari, etc.) display a padlock icon next to the URL in the address bar.
  • Click on the padlock to view more details about the site's security certificate. Ensure the certificate is issued to idrecon.net.

Verify the SSL Certificate

  • Issued to: idrecon.net
  • Issuer: GlobalSign
  • Validity: Confirm the certificate is active and has not expired.

Avoid Security Warnings

If your browser displays a "Not Secure" warning or prevents access, do not proceed. Contact us immediately at support@idrecon.net to report the issue.

Enable HTTPS-Only Mode

To enhance your security, you can configure your browser to block any non-secure connections:

  • Chrome/Edge: Go to Settings > Privacy and Security > Security and enable "Always use secure connections."
  • Firefox: Navigate to Settings > Privacy & Security, scroll to "HTTPS-Only Mode," and enable it.

Watch for Suspicious Activity

  • Be cautious of typosquatting or phishing domains that may look like our website but differ slightly, e.g., idrec0n.net or idrecon.xyz.
  • Ensure you are not redirected to another domain or presented with inconsistent branding.