Contact Us Terms Join Sign In

Quiz & Guidelines

Secure Funder is not software. Companies choose how to meet requirements. The program focuses on protecting the initial submission package, where unauthorized use most often occurs. If the package can be downloaded, we look for controls that reasonably reduce opportunities for those files to leave company systems. Guidelines are for deal-processing roles. (e.g. underwriters, sales, etc.)

How It Works

  • Take 2-minute quiz and submit request to join.
  • Receive portal access, your Member #, and ‘Applicant’ directory listing.
  • Your participation is announced through social media and the program newsletter.
  • Upload supporting evidence within 90 days — extensions and support available.
  • Submit the member fee to start final review.
  • Earn certification, receive digital badge, and directory listing updated to ‘Certified’.

Member Fee

Membership is $2,499 per year and supports program administration, independent evidence review, member support, ongoing program development, event sponsorships, and maintenance of the public directory.

Start Quiz
Tell us how you handle submissions. We’ll use your answers to tell you if you qualify. Don’t qualify? Join today and work toward certification with our support.
How do brokers submit deals to you?
Select all that apply.
System of Record
Are the submission documents view-only, or downloadable?

✅ View-only access meets this requirement. The standard applies to the initial submission package, not routine supplemental documents exchanged later in the funding process.

Vulnerability Detected: Once files are downloaded, they are available locally. Without safeguards, those documents can be sent outside company systems without your knowledge. One of the most common methods is through a web browser, where a user can access personal email and send files to themselves or another party. You can restrict system-of-record access to view-only, or adopt one of the acceptable safeguards listed below.

Acceptable safeguards
Equivalent approaches may also qualify.
Download Safeguards

This item can clear upon receipt of one of the following: (for deal-processing roles)

  1. Change document access to view-only
  2. If documents must remain downloadable, browser restrictions that block access to personal email and cloud storage domains, along with device controls that prevent file transfers through USB.
  3. Documents watermarked with the company name or logo before reaching system of record, or at the time download. Watermarking is accepted as a reasonable deterrent against misuse.
  4. Other: Another safeguard or approach that meets the intent of the requirement. We’re happy to review alternatives or schedule a brief call to discuss practical options.
Other
Email
When a submission first reaches the inbox —
Once in the system of record, are the submission documents view-only or downloadable?

✅ View-only access meets this requirement. The standard applies to the initial submission package, not routine supplemental documents exchanged later in the funding process.

Vulnerability Detected: Once files are downloaded, they are available locally. Without safeguards, those documents can be sent outside company systems without your knowledge. One of the most common methods is through a web browser, where a user can access personal email and send files to themselves or another party. You can restrict system-of-record access to view-only, or adopt one of the acceptable safeguards listed below.

Acceptable safeguards
Equivalent approaches may also qualify.
Download Safeguards

This item can clear upon receipt of one of the following: (for deal-processing roles)

  1. Change document access to view-only
  2. If documents must remain downloadable, browser restrictions that block access to personal email and cloud storage domains, along with device controls that prevent file transfers through USB.
  3. Documents watermarked with the company name or logo before reaching system of record, or at the time download. Watermarking is accepted as a reasonable deterrent against misuse.
  4. Other: Another safeguard or approach that meets the intent of the requirement. We’re happy to review alternatives or schedule a brief call to discuss practical options.
Other

Vulnerability Detected: Once files are downloaded, they are available locally. Without safeguards, those documents can be sent outside company systems without your knowledge. One of the most common methods is through a web browser, where a user can access personal email and send files to themselves or another party. You can stop accepting submissions via email, automate them into your system of record — ask us how — or adopt one of the acceptable safeguards listed below.

Acceptable safeguards
Equivalent approaches may also qualify.
Download Safeguards

This item can clear upon receipt of one of the following: (for deal-processing roles)

  1. Change document access to view-only
  2. If documents must remain downloadable, browser restrictions that block access to personal email and cloud storage domains, along with device controls that prevent file transfers through USB.
  3. Documents watermarked with the company name or logo before reaching system of record, or at the time download. Watermarking is accepted as a reasonable deterrent against misuse.
  4. Other: Another safeguard or approach that meets the intent of the requirement. We’re happy to review alternatives or schedule a brief call to discuss practical options.
Other

Quiz complete.

We’ll also ask about System Access and Personnel Controls. Companies are reviewed holistically. “No” responses do not automatically prevent certification.

  • Is MFA enabled for email and system of record?
  • Do you run background checks?
  • Is screen lock enabled?
  • Do you have a documented off-boarding process?
Methods