It
is the policy of Inuva Info
Management to safeguard employee
interests and to prevent the
interruption of vital business
operations at any time. We
are committed to employing
all appropriate strategies
for anticipating and controlling
crisis situations. We comply
with the world renowned ISO
27001 Information Security
Standard which is implemented
across the entire organization.
An integrated Information
Security Management System
(ISMS) is at the heart of
our security and business
continuity approach. A “battle
ready” emergency and
contingency management plan
provides for response to unwarranted
threats and disruptions to
business operations that could
harm personnel, property or
reputation of the company.
Our Chief
Security Officer known as
the Inuva Security Evangelist
reports directly to the CEO
and spearheads all security
related projects and implementations.
An internal benchmark called
the “Key Security Metrics”
articulates the management’s
security objectives and implementation
timelines.
Some of the key features
of our Information Security
Management System:
Technology:
Network and application
infrastructure is segregated
by L3 switching and VLANs.
Perimeter security through
industry standard Cisco
Pix Internet security appliances.
VPN links between all
Inuva offices with 3 DES
encryption.
Voice call recording
of all phone communication
with clients and vendors.
Log alert and analysis
carried out on all critical
systems equipments
Intertec Quality Registrar’s
carries out periodic External
Audits.
Periodic Intrusion detection
and vulnerability assessment
by external agencies.
Antivirus and anti-spam
protection by leading vendors
such as Trend Micro, Clam
AV and others.
Facility:
Facility redundancy to
ensure continuous business
operations.
Individual Physical Access
is controlled and monitored.
Building evacuation plan
and regular drills
CCTV monitoring all work
areas with 90 day recording.
Human Resource:
NDA
and Fidelity bond with
each employee. Rigorous
background checks of each
employee prior to
joining.
Information
Security training and
evaluation of all staff
members to keep them well
informed of
information
handling procedures and
practices.
Rewards
for reporting incidents
and reprimand for violators.
|