How and Why We Obtain Information

Benemark, Inc. collects information about you to help us serve your financial needs, provide
customer service, offer new products or services, and fulfill legal and regulatory requirements.
Any collection of personal information is to support our normal business operations and service
your account.

Some of the nonpublic personal, financial, and health information that Benemark, Inc. collects
comes from you and other sources which may include:

  • information on applications and related forms, such as name, address, Social Security
    number, assets and income, and medical information if applying for insurance;
  • information regarding your transactions with us, such as products or services purchased,
    account balances, and payment history;
  • information from consumer reporting agencies, such as credit relationships;
  • information from your employer, association, or benefit plan sponsor, such as name,
    address, Social Security number, assets, and income.


Sharing Information

It is our intent to keep all nonpublic personal information completely confidential, private, and
secure. However, in the course of servicing your account, we may share information collected
about our clients, as previously described above, with other unaffiliated service providers such as
insurance companies, mutual fund companies, broker/dealers or investment firms to provide
account maintenance or customer service to your account. We may also disclose your
information to other organizations as permitted by law such as government agencies and law
enforcement officials (for example, tax reporting or under court order), or to other organizations
and individuals with your consent (for example, an attorney or tax professional).

All data is stored in Microsoft’s Office365 cloud platform and data storage is physically located
in Microsoft’s US Based datacenters. Microsoft datacenters meet ISO/IEC 27001 standards and
are audited annually. The ISO/IEC 27001 family of standards specifies the requirements for
implementing, maintaining, monitoring, and continually improving an information security
management standard (ISMS). Cloud based data backups of the Office365 data are kept at the
Datto facility in Salt Lake City, UT. Datto’s datacenters are compliant with the Service
Organization Control (SOC1/SSAE16 and SOC2) reporting standards and contain redundant
climate, power, and Internet services with security being maintained 24/7/365. All backups are
also AES-256 bit encrypted at rest.


Protecting Your Information

Benemark, Inc. maintains physical, electronic, and procedural safeguards to guard your nonpublic
personal information to ensure that we are complying with our own policy, industry practices, and
federal or state regulations. If you decide to close your account(s) or become an inactive
customer, we will adhere to the privacy policies and practices as described in accordance with our
current policy.

Benemark, Inc. reserves the right to change this Privacy Policy at any time, without notice, and
will notify customers of any modifications on an annual basis.