Trust & Security

Vector AIS is committed to ensuring the security, integrity, and confidentiality of our systems and the data entrusted to us by our customers. We have implemented comprehensive security measures to safeguard our proprietary accounting system and maintain the highest level of protection.

Our security efforts encompass various aspects, including but not limited to:

Account Security:

  • Secure Password Practices: All end users generate their own password at the time of account activation. Passwords are not system generated, and are subject to minimum password requirements, expiration limits, and login attempt protection.
  • Secure Hosting on AWS: Our servers and data are hosted on Amazon Web Services (AWS), which adheres to strict compliance standards such as SSAE 16 (SOC 1, SOC 2, and SOC 3).
  • Restricted Access: Only authorized Vector employees have access to our production environment, which is protected by public key encryption and two-factor authentication.
  • Multi-Factor Authentication: We employ multi-factor authentication (MFA) for remote network and system access, which cannot be disabled by Vector employees.
  • Regular System Audits: We conduct regular system audits to ensure that only authorized personnel have appropriate access to Vector systems.

Operational Security

  • Background Checks: We perform extensive background checks on all employees prior to Vector employment.
  • Security Awareness Training: Our employees receive annual security awareness training to stay updated on best practices.
  • Password Management: We utilize password management solutions to securely store and log credentials for privileged accounts.
  • Advanced Malware Protection: We employ advanced malware and endpoint detection and response (EDR) technology to safeguard our systems.
  • Managed Detection and Response (MDR): Our systems and networks are continuously monitored by MDR services, ensuring 24/7 protection and incident response capabilities.
  • Secure Website and Platform: Vector’s website and Valence are served over SSL for secure website traffic. Insecure protocols like SSL 2 and SSL 3 are disabled.

Infrastructure Performance Monitoring:

  • Scalable and Resilient Infrastructure: Our infrastructure is designed for scalability and resilience, with an auto scaling group that increases storage when CPU usage reaches a defined threshold.
  • System Notifications and Alarms: Alarms are configured to send system notifications to the System Administrator and Director of Technology when actionable resolutions are needed.
  • Proactive Infrastructure Monitoring: We actively monitor our infrastructure, promptly reviewing and addressing any recommendations made, ensuring efficient resource utilization.
  • AWS Security: We leverage AWS Security applications to perform security best practice checks, generate alerts, and suggest remediation steps, mitigating potential security issues.

Infrastructure Maintenance and Security:

  • Data Backups: Our database is backed up nightly to multiple locations within the United States.
  • Logging of Customer Data Changes: Every action on the Valence platform is logged, allowing us to track data changes, including who made what change and when.
  • Secure File Hosting: Files are hosted on AWS storage service, encrypted with AES-256, and backed up nightly to geographically diverse locations within the United States.
  • Restricted Access to Private Keys: Access to private keys is limited to authorized Vector employees and is rotated on an annual basis.
  • Regular Vulnerability Scans: Quarterly external vulnerability scans, including the Valence Platform, are conducted to identify and remediate potential vulnerabilities.
  • Third-Party Penetration Tests: An external network and application penetration test, including the Valence Platform, is performed annually by a qualified third-party, with findings addressed based on risk-management best practices.
  • Encryption of Data: Data in transit and at rest on the Valence Platform is encrypted to maintain strong security.
  • Risk Management: We maintain a running risk register, ranking risks and documenting strategies and action plans. We remediate findings according to risk-management best practices.
  • Planning and documentation: We maintain a formal Incident Response Plan, Business Continuity & Disaster Recovery Plan, Information Security Policy, and an Acceptable Use Policy that are published to employees and reviewed/tested on an annual basis.

Valence Updates:

  • Timely Software Releases: Our software updates are typically released at approximately 9:30 p.m. US/Pacific time. During these updates, which are often iterative in nature, there may be brief moments when our service is temporarily unavailable as we implement the changes.
  • Comprehensive Testing: To maintain the highest standards of reliability, all software changes go through rigorous testing. This includes thorough examinations of critical components of the application, including visual tests to verify that any visual alterations meet our expectations. By conducting extensive testing, we ensure that our updates are robust and deliver the intended enhancements.

Support:

  • Customer Support: For assistance, customers can reach out to Valence Support by emailing valence@vectorais.com. Our dedicated support team is available to provide timely and helpful responses to inquiries and technical issues.
  • Valence Monitoring and Updates

Reporting Vulnerabilities:

  • Responsible Disclosure: If you believe you have discovered a vulnerability within Valence or if you are a security researcher interested in this space, we encourage you to report it to us promptly. Please contact us at security@vectorais.com and include as many details as possible, including step-by-step instructions to reproduce or demonstrate the vulnerability. We appreciate your cooperation in maintaining the security of our systems and will respond promptly to address and resolve any reported vulnerabilities.

Molly Yakubian

ceo & Managing Partner

Based in Boston, Molly has spent her career in the alternative investment industry, both as a consultant advising fund managers on regulatory compliance matters, and in business development roles working with managers to solve challenges related to compliance, technology, performance, ESG, cybersecurity and risk, and back office outsourcing. Molly graduated from the University of Massachusetts with a bachelor’s degree in finance and is a CAIA Level II candidate.

Having worked both in-house at a private equity shop, as well as in consultative roles with hundreds of managers across a wide spectrum of industry challenges, Molly developed a passion for problem-solving, a commitment to enablement, and ambition for creating synergies between fund managers and service providers.

When not working, Molly spends her time with her three young children, and their family rescue dog, Lani, whom she loves to take for trail runs.

Matthew Wheeler

Founder & CEO

Matt is an alternative investment industry veteran with a passion for helping others – whether it’s assisting fund managers operate their funds, investors track their investments, team members develop their careers or service providers expand their practice. Matt and his team are working hard to build an industry-leading technology solution that brings these parties together.

An Ontario, Canada native, Matt graduated from the University of Western Ontario with a degree in business. He went on to earn the CPA designation before spending time in the Cayman Islands auditing alternative investment funds. Prior to starting Vector AIS (Alternative Investment Services), Matt was a director in the San Francisco office of a premier closed-end fund administrator where he led teams administering various investment strategies, including some of the biggest names in the venture capital industry.

Matt is obsessed with efficiency and enjoys designing elegant solutions to complex problems. He is an adventure seeker who loves hitting the slopes and single-track bike trails. He’s also into adventure travel, including jungle hiking and street food tours. In his down time, he likes to cook or read a book. Matt is currently based out of San Francisco.