| |
 |
 |
| |
|
|
| |
Data confidentiality is maintained through multiple means-physical security, technological initiatives, robust policies and constant monitoring. Various initiatives under security are listed below |
|
| |
|
|
| |
Physical Security
|
|
| |
- Restricted Access to work area and desktops
- Screening of visitors/employees by a security guard during entry and exit for data storage media like floppies, cds, usb drives etc.
|
|
|
| |
Data Security |
|
| |
- No data movement from US as data is housed in server farms in USA or is processed through remote access of client servers
- Secure network and application access
- Regular security audits are performed
- All data is backed up on a regular basis in server farms to enable anytime viewing by the clients
|
|
| |
Network Security |
|
| |
- Use of secured line (128 bit SSL) to access and transmit data from servers in US
- Segmented LAN with firewall protection
- All ports except DNS and SMTP severs are disabled for the external world
|
|
| |
PC Security |
|
| |
- Individual domain accounts for each processor ensure that the access to source documents is restricted to authorized employees only
- No fax and printing capabilities at the processing site
- PCs used by processors do not have floppy/USB and CD ROM drives
- PCs used in processing are denied email and web access
- Regular updation of anti-virus software
- Low usage of paper in the floor area
|
|
| |
|
|
|
|
|
|
 |