|
1. PURPOSE
The purpose of this Security Policy is to highlight the measures undertaken by Intellecap to ensure protection of Data provided by the Users.
Intellecap has industry standard security measures in place to protect the loss, misuse and alteration of the Data under its control. Intellecap shall take all reasonable steps to ensure the safety of Data provided by the Users.
2. VALIDITY
This Policy will be initially for a period of 1 year after which it will be reviewed to keep the Policy current.
3. POLICY
Intellecap accords top priority to security and strives to provide protection against accidental access, unauthorized access, data corruption or erasure by way of appropriate physical and managerial procedures which includes:
- Restricting physical access to Data and to authorized employees of Intellecap.
- Not allowing unauthorized software on IDG computers and also on the website
- The human systems in place to protect the "key" access to root server.
- Securing laptops that contain sensitive information by using cable locks
- Ensuring that monitors are positioned away from public view. If necessary, initiate steps to install privacy screen filters or other physical barriers to public viewing
- Ensuring that all computers/laptops used by employees use a surge protector and/or or a UPS.
- Servers:What kind of security measures are undertaken
- Bio-metric access to data center combined with card access
- Physical access restrictions
- surveillance
- Access logs enabled for audit trails
- Backups as per business requirements
- Encryption: whether you use Secure Socket Layer (SSL) protocol and 128-encryption technology or else what is the encryption technology used.
- Root access to host.
- Unique passwords for each User
- Virus Checking – Whether presently carried out or not
- Securing information (screen lock or logout) prior to leaving area or work to prevent unauthorized access
- Enabling a password protected screen saver with a short time-out period to ensure that computers that are left unsecured by the employees will be protected
- Ensuring strict compliance with all applicable password policies and procedures.
- Ensuring that the information and the website are used only for authorized business purposes
- Storing all sensitivity information on network servers
- Appointment of Information Security Officer or a Chief Technology Office
4. AMENDMENTS
Intellecap reserves the right to amend this Security Policy at any time by posting the amended terms on IDG.
|