Security and Compliance
Cenza has been certified ISO/IEC 27001:2005, for implementing the premier standard for information security. Safeguarding client data and maintaining confidentiality is of utmost importance. Our systems and processes ensure that the intellectual assets of our clients are managed in a secure environment. We follow stringent security processes for storage, retrieval and deletion of client data and ensure our staff is properly screened and that every employee takes security and confidentiality seriously.

Personnel

  • Access control systems include 24 hour uniformed security and proximity readers
  • Background checks conducted before hiring
  • Signed confidentiality agreements upon hiring
  • Limited access to the Internet, email, printers and media drives
  • Dedicated work area to maintain confidentiality and restricted physical access
  • Client material is printed on 'securitized' paper for projects where printing is required
  • Client names and confidential project data are not disclosed internally
Technology

Domain based secure network with comprehensive access controls
  • Networks split into multiple VLAN’s for each project or team
  • VLAN access controlled by using Access Control List (ACL) in the Layer 3 switch
  • Folder access is controlled by folder permissions in the Server
  • Complex passwords are used for domain credentials. User Passwords expire every 30 days, and wrong password locking in place
  • External storage devices are restricted, user credentials work only in their department
  • Data is Wiped every 30 days
Network protected through advanced firewalls and network monitoring
  • LAN restricted to only authorized sites using a hardware firewall
  • Unauthorized access to network restricted through switch and firewall
  • Network monitoring by Packet Captured in firewall
  • Sonicwall Viewpoint Software is used to monitor all Web logs
Utilize secure protocols for data transfer
  • We use SSL (Secure Socket Layer) & SSH (Secure Shell) file transfer for FTP
  • Data is encrypted by AES prior to transfer


Read More:
Testimonials
cenzatech.com