• securing

    Securing your data in transit 

    Encrypted with industry-standard protocols, including TLS 1.2 or higher

  • Guarding

    Guarding your data at rest 

    Protected with 265-bit encryption, the industry-leading security measure

  • Proving

    Proving our commitment

    Evaluated annually for SOC 2 Type II compliance by an external auditor

Sign-in and multi-factor authentication (MFA) 

Before granting access to your Quicken account, we verify your identity using risk-based fraud detection. When our systems detect unusual sign-in activity or elevated risk, we may require MFA.

Screenshot of the Quicken sign-in screen with Face ID enabled and a multi-factor authentication notification displaying a one-time verification code.

Payment Card Industry Data Security Standard (PCI DSS) 

We follow robust security policies to help protect your payment data from breaches and fraud, backed by an annual Qualified Security Assessor (QSA) assessment.

Photo of a woman checking her phone while standing at an ATM, with a shield and lock icon.

Frequently asked questions

How do I know my data is secure with Quicken?

We use multiple layers of security to help protect your personal and financial information. These include strong encryption, multi-factor authentication, continuous monitoring, independent security assessments, and compliance with industry-recognized security standards such as SOC 2 Type II and PCI DSS.

How does Quicken secure my data in transit?

All communications between your device and Quicken are encrypted using industry-standard Transport Layer Security (TLS) 1.2 or higher, helping protect your data while it is transmitted over the internet.

How does Quicken secure my data at rest?

We encrypt sensitive customer data at rest using the Advanced Encryption Standard (AES) with 256-bit keys, one of the industry's most widely adopted encryption standards.

How does Quicken protect access to my account?

We use advanced fraud detection systems to continuously evaluate sign-in activity. When elevated risk or suspicious activity is detected, we may require additional verification through multi-factor authentication (MFA) before granting access to your account.

Does Quicken use independent security assessments?

Yes. Our security program is regularly evaluated by independent auditors and third-party security firms through SOC 2 Type II audits, PCI DSS assessments, and penetration testing.

What cloud hosting provider does Quicken use?

Your personal data is securely stored on Amazon Web Services (AWS), a leading global cloud infrastructure provider. AWS provides highly available, secure infrastructure that supports our services. Learn more on the AWS Cloud Security page.

How does Quicken protect my payment data?

We protect payment card data in accordance with the Payment Card Industry Data Security Standard (PCI DSS). Our PCI compliance program includes annual independent assessments by a Qualified Security Assessor (QSA) to help ensure that payment data is handled securely.

How does Quicken monitor for security threats?

We continuously monitor our systems for suspicious activity using automated security tools and operational monitoring. Our security teams investigate potential threats and respond quickly to protect customer data.