About Services Technology Clients Blog Contact
HomeLegal

Information Security

Legal documentCourtesy translation — the Spanish version governs · Last updated: March 2026

Your operation is in good hands

At éxodo bpo we know that when you hand over sensitive work, the first thing you need is trust. That is why the security of your information is not a detail: it is the core of what we promise.

We work to the highest standards of cybersecurity and data protection. Everything that passes through our systems is protected by multiple layers of security.

How we protect your information

  • Encrypted at all times: all data travelling between your browser and our platforms is encrypted with 256-bit SSL/TLS. Always HTTPS.
  • Controlled identity: every user signs in with unique credentials. Failed sign-in attempts are blocked automatically and raise internal alerts.
  • Continuous updates: we keep every system, antivirus and firewall current, and apply security patches proactively.
  • Secure sessions: sessions close automatically after 30 minutes of inactivity, and passwords must be renewed every 90 days.
  • Fraud protection: we detect and block phishing, spoofing and malware attempts. Our servers run enterprise-grade firewalls with continuous 24/7 monitoring.

Technologies and standards

  • 256-bit SSL/TLS in transit and AES-256 at rest.
  • Strong per-user authentication, with MFA support for administrative accounts.
  • Advanced firewalls and intrusion prevention and detection systems (IPS/IDS).
  • Secure servers in data centres holding security certifications.
  • Access control policies based on the principle of least privilege.
  • Full activity traceability: logging and auditing of relevant events.

Additional controls

  • Least privilege: each role only reaches the information its function requires.
  • Encrypted backups: backups encrypted and verified regularly, with documented disaster recovery procedures.
  • Third-party management: confidentiality agreements and security clauses with every supplier and sub-processor.
  • Retention and deletion: policies to retain data only as long as needed and delete it securely when appropriate.
  • Regular testing: security controls, hardening and regular operational validation.
  • Incident response: an internal priority-handling procedure with notification without undue delay.

Recommendations for your account

  • Use unique passwords that are hard to guess.
  • Never share your credentials.
  • Avoid public networks and untrusted devices.
  • Always reach us by typing the address directly: www.exodobpo.com

Spotted something suspicious?

If you receive a suspicious email or message in the name of éxodo, do not click and do not enter any data. Forward it to hola@exodobpo.com with the subject "Fraudulent email". Our security team reviews it immediately.

Regulatory framework

This policy forms part of our compliance with:

  • Argentine Law 25.326 on Personal Data Protection.
  • The standards of ISO/IEC 27001 on information security management.
  • Provisions issued by the Argentine data protection authority.
  • A data-matching agreement with the Argentine national persons registry for identity verification services, under Law 25.326.

Limitation of liability

Éxodo is not liable for commercial, financial, credit or regulatory decisions taken by its clients on the basis of the results of its services, nor for the use they make of the processed information. The information analysed rests on the documents and instructions supplied by the client.

Next document
Terms and Conditions
Legal — éxodo bpo