Entity identifies vulnerabilities on the Company platform through the execution of regular vulnerability scans.

Sep 08, 2023

Entity maintains a record of information security incidents, its investigation and the response plan executed as per the Incident Management Policy

Sep 08, 2023

Entity has established an Incident Management & Response Policy, which includes guidelines and procedures to be undertaken in response to information security incidents. This is available to all staff members via the company employee portal.

Sep 08, 2023

Entity maintains an inventory of infrastructure assets and segregates production assets from its staging/development assets

Sep 08, 2023

User access to the entity’s application is secured using https (TLS algorithm) and industry standard encryption.

Sep 08, 2023

Every Production host is protected by a firewall with a deny-by-default rule. Deny by default rule set is a default on the Entity’s cloud provider.

Sep 08, 2023