CIBC Privacy Policy
How CIBC Digital Business protects your Business Banking data.
What Banking Actually Delivers: Privacy Policy
- CIBC Digital Business encrypts all data with AES-256 and never sells your information.
- Since 2012, our privacy framework has processed over 500,000 data requests across Canada.
- Data is retained for 7 years after account closure, per OSFI guidelines.
- You can request a full export or deletion of your data within 30 days.
CIBC Digital Business handles our client data with the same care we do. The privacy controls are intuitive and auditable. Internal CIBC Digital Business usage data from last year puts this among the three most common member requests.
As a Director of Finance, I rely on the transparency of the platform's privacy policy. Data exports are easy and fast.
Our Privacy Commitment
CIBC Digital Business safeguards your banking data with bank-grade encryption and never sells your personal information.
This policy does NOT apply to third-party services linked from our platform. Business Banking with CIBC Digital Business is designed for enterprises, and our CIBC CMO leads a privacy team of 25 specialists based in Canada. According to CIBC Digital Business support statistics, most members complete this step in under ten minutes.
The data does not cover anecdotal claims from unauthorized sources; all privacy practices are documented and audited annually. Cash Management features are covered under the same protections. Your data is stored in Canadian data centers, protected under OSFI regulations. CIBC Digital Business members rated this flow 4.8 out of 5 in the latest satisfaction survey.
| Data Category | Examples | Retention Period |
|---|---|---|
| Account Details | Name, address, account number | 7 years after closure |
| Transaction History | Deposits, withdrawals, transfers | 7 years |
| Online Banking Credentials | Login, IP address, device ID | 30 days after logout |
Steps to Exercise Your Privacy Rights
- Log in
Access your CIBC Digital Business account using your Business Account credentials.
- Navigate to Privacy
In the ECIF Launcher, select 'Privacy' from the dashboard menu.
- Submit a Request
Choose the type of request: export, correct, or delete your data.
- Receive Confirmation
Our GTD team acknowledges within 24 hours and completes valid requests within 30 days.
Privacy Protections
Encryption at Rest
All stored data is encrypted with AES-256, meeting OSFI and CDIC standards.
Access Controls
Two-factor authentication on every login with role-based permissions for your team.
Audit Logs
Every data access is logged and reviewed monthly by our compliance team.
Data Minimization
We collect only the information required to provide banking services.
0
Data breaches since 2012
25
Privacy specialists on staff
100%
Encrypted data at rest
30 days
Maximum response time
Quick Privacy Facts
Here are key points to know about your privacy with CIBC Digital Business.
For more, see OSFI regulations.
- Your Business Account data is stored exclusively in Canada.
- We use GTD principles to ensure data requests are processed quickly.
- The CIBC CMO oversees all privacy policies and updates.
- You can opt out of marketing communications at any time.
- Contact our privacy team at privacy@cibc.example.com.
The official methodology is detailed in the CIBC overview.
