Maximum security, maximum user-friendliness: your guide to using CIC eLounge securely
CIC eLounge has very high security standards, both for the computer and via mobile app. Nevertheless, criminals keep using various methods to obtain confidential information. Find out in this post how you can use CIC eLounge in a more secure way.
The main points in brief
Use a secure password and change it regularly, activate two-factor authentication and never disclose your login details. Be careful with unfamiliar emails, links and attachments and never click on suspicious links. Keep your software and operating systems up to date and use a reliable anti-virus program and a firewall.
You should only access CIC eLounge from our website https://www.cic.ch or by entering https://www.cic.ch/elounge directly in the address bar of your browser. You should never do so via search engine results, links on third-party websites, internet pop-ups or social media posts. These may have been set up by third parties and take you to websites that are potentially fraudulent.
Identification
- Always store the letter with your personal user ID separately from your other CIC eLounge documents.
- Your personal password is secret. Never write it down and never give it to third parties.
- Never give strangers or unauthorised persons access to your computer or mobile devices.
- Never pass on any confidential information about CIC eLounge or your mobile device to third parties by email or telephone.
- Never log in to CIC eLounge by clicking on a link sent to you by email. Only navigate to our eLounge page directly or via the CIC homepage. Always check that the address is correct before you enter your login data.
- In the event of the loss or theft of your login information, contact the eLounge Hotline (+41 (0)58 268 16 30) immediately to have your access to CIC eLounge blocked.
Password
- You have to change your initial password when you register. Your new password must have at least ten characters, consisting of a combination of numbers and upper and lower-case letters. We recommend also using at least one special character.
- Set a secure password. Avoid obvious names and digits, and passwords that you use elsewhere. Follow the tips at https://www.ebas.ch/en/4-protecting-online-access/.
- Never disclose your password to third parties: we will never ask you to tell us your password or other confidential information.
- Change your password regularly. If you suspect that someone could have discovered your password, change it immediately.
- Deactivate input assistance and password storage in your browser.
Signing off on transactions
To increase the security of payment transactions, you have to sign off on payments. Once a payment has been entered in CIC eLounge, the payment details (recipient, currency, amount) are shown in your CIC Digipass or CIC eLounge app, depending on the authentication procedure you have selected. Only approve payments if the details match the invoice. Under “Settings > Limits” in CIC eLounge, you can determine whether you wish to sign off payments for all transactions or only some, and above which amount you wish to do so.
Logging in and out
- Each time you log in, check the date and time of the last login. This information is displayed when you log in on your registered mobile device or the CIC Digipass you need to log in.
- You have three chances to enter the correct password. After the third unsuccessful attempt, your user ID will be blocked temporarily. After the fifth unsuccessful attempt, your user ID will be blocked permanently. Only the CIC eLounge Hotline is authorised to reactivate your user ID and password or send you a new password. For reasons of security, the password is always sent by registered post.
- End every CIC eLounge session by clicking on the “Logout” button. If you forget to end your session by clicking on the “Logout” button, the connection will be automatically ended after ten minutes with no activity for your own security.
- Your computer stores the websites you visit in a directory on your hard drive so that it can display them quicker at a later date. However, if you wish to protect your data against unauthorised access, you should block storage of sites visited or delete temporary internet files after each use. See also https://www.ebas.ch/en/deleting-browser-history/
Software and hardware
- Only download the CIC eLounge app from the Apple and Google app stores.
- Protect your computer and mobile device with an anti-virus program and a firewall, and update these programs regularly.
- Regularly run updates for your computer, mobile device and browser to ensure you are always using the latest technology.
Points of contact
If you are in any doubt, please get in touch with your Bank CIC contact person at the usual address. Do not call the phone number displayed on your phone, as this may be fake. Bank CIC will never ask you for your e-banking access details by email or over the telephone.