Security Information

Security/Confidentiality
Data Encryption
Message Integrity
Server Authentication
Firewall Protection
User Authentication
User Responsibility
For Assistance

Security/Confidentiality

At Sun Life Financial, we take our user's security and confidentiality very seriously. While there is inherent risk in doing business with anyone over a public medium like the Internet, we have implemented measures to reduce these risks. Our Internet site, uses several layers of strong security technology to help ensure the integrity and confidentiality of online transactions.

In order to assist in protecting a user's information, the site uses Secure Sockets Layer ("SSL") the de facto security standard on the Internet. The use of SSL provides data encryption, message integrity and server authentication all of which are described below.

Top of Page


Data Encryption  

The data transmitted between Sun Life Financial and the user is encrypted (scrambled) before being sent across the Internet. Only Sun Life Financial and the user's browser should hold the key to decrypt each other's messages.

128-bit encryption is currently the strongest publicly available encryption and is available from both Netscape and Microsoft. For your own security, you will not be able to authenticate to this site if your browser does not support 128-bit encryption. We recommend that you use one of the following supported browser versions:

    1.   Microsoft Internet Explorer, version 6 - Microsoft Download Centre
    2.   Netscape, version 7 - Netscape Download Centre


Top of Page


Message Integrity  

The use of Secure Sockets Layer is designed to prevent tampering with the messages received from or sent to Sun Life Financial during transmission across the Internet.

Top of Page


Server Authentication  

Sun Life Financial's identity is authenticated by our site certificate. A site certificate is a digital document that is authorized by a trusted third party. The unique signature on the certificate, which was verified by the third party certificate authority, cannot be forged by any other server. By viewing our site certificate you can be sure that you are communicating with Sun Life Financial.  

Top of Page


Firewall Protection of Sun Life Financial's Internal Systems  

Sun Life Financial's firewall is designed to protect Sun Life Financial's internal computer systems, and your data, from unauthorized access. All communications between the Internet and Sun Life Financial's computer system must pass through a single point where authentication takes place and authorization is established.

Top of Page


User Authentication  

In order for Sun Life Financial to verify the user requesting access, the site will prompt the user for an Access ID and Password.

If the site confirms the information entered, the user will be authenticated and access will be given to the user without the actual identity of the user being confirmed. The user agrees that the use of this electronic authentication procedure is equivalent legally to the user's written signature.

If for any reason Sun Life Financial in its sole discretion requires additional information or verification before accepting a transaction, the user acknowledges that he/she will provide such information. Sun Life Financial will also have the right to restrict access or cancel access to the site without providing notice to the user. This will be done in cases where Sun Life Financial has reason to believe that the user's data may be at risk.

Top of Page


User Responsibility

It is the user's responsibility to keep his/her sign-on information confidential and to prevent its unauthorized use. It is also strongly recommended that the user change his/her password on a regular basis using the appropriate facility on the site. It is also not advisable for security reasons to have a password associated with the user's birth date, telephone number, address, social insurance number or anything else which could be obviously guessed.

To prevent others from accessing your information by guessing your password, Sun Life Financial will disable your password after three (3) consecutive invalid sign on attempts. If this occurs, the user should contact the number indicated on the error message received.

Sun Life Financial also recommends that users do not leave their computers unattended while connected to the site. To prevent an account from remaining open when not in use, a session will be closed after several minutes of inactivity. If this occurs and the user wants to continue his/her session, the user will have to sign on to the site again.

Sun Life Financial will not be held responsible for any loss or damages which may be incurred as a result of the unauthorized use of the user's password. If the user is concerned that his/her password may have become known to another individual or individuals, the user can change his/her password quickly on the site.

Top of Page


For Assistance  

If you have any questions or concerns regarding your use of the site, please refer to the HELP button on your screen.

Top of Page


Legal Privacy