Good afternoon everyone and happy Good Friday.
I’m looking to gather some input on best practices for securely sending and receiving client PII.
Up until now, our firm has primarily used password-protected PDFs and secure upload links for exchanging sensitive client information. However, we’ve recently upgraded our Microsoft subscription, which now includes encrypted email capabilities. After confirming with compliance, we’ve been advised that this method meets regulatory standards as well.
I’m curious what methods other advisors here are using.
- Do you have a preferred method for sending/receiving PII?
- Have you adopted encrypted email as a standard, or do you stick with portals or password-protected docs?
- Any tips or best practices you’ve found helpful in communicating securely with clients?
Thanks in advance for your input—I really appreciate learning from this community.