Confidentiality
Systel understands the importance of IP and Confidentiality of our clients' confidential information. We see this as the critical element for maintaining a long-term relationship with our clients. We are committed to protecting customer IP throughout the project cycle.
|
|
Key areas of our IP protection policy & project confidentiality include:
|
Non Disclosure Agreements (NDA)
|
| With The Clients |
To ensure the security and confidentiality of information, a Non-Disclosure Agreement (NDA) is executed with each client and all private information is respected. Our NDA clearly explains:
- What will be collected from client?
- Why will it be collected?
- How will we use it? Steps we will take to protect it.
- With whom it may be disclosed / shared - for legal and security issues etc.
- Rights for access to information
- Levels of Risk (data loss, unauthorized alteration, etc.
|
| With The Employees |
At the time of joining, all employees are required to sign a proprietary information and inventions agreement. Individual NDAs are also signed with every employee on joining which emphasizes
- Employees cannot disclose any proprietary information directly or indirectly to anyone outside the project team or company, or use, copy, publish, summarize or remove such information from the company premises
- Employees cannot use any unfair competitive practices upon termination of employment or engage in any business during employment
- Any confidential information received from third parties and clients are held in strictest confidence and employees are not allowed to disclose or use it, except as necessary to perform his/her obligations as is consistent with third parties
|
|
Project-related IP protection
- Dedicated resources made available for all projects. This prevents unauthorized usage of resources and protects all proprietary information of our clients
- We have a strong ethical framework that forbids exchange of IP between projects
- Every team dedicated to a particular client can have its own secure physical location and its own segment of the LAN.
|
Security
Data Access Security
- Security Firewalls are installed to prevent unauthorized access to the network
- Group policies in place for accessing PCs and workstations for authorized access
- All email and web servers are located at an independent internet data center
- GFS Backup policy in place. Monthly backups are stored at an off-site location and removable backups are kept safe with logs duly maintained.Daily backup are stored in fire-proof safe.
- External security audits are enforced to assess any breach with multi level security management in control
- Physical security ensures no CDs, Pen-drives, movable media goes in and out of the facility without written permission from the management
Network Security
- Each client's process is run on a separate VLAN/VPN when run off-shore/off-site
- Software defined secure tunnels through the internet
- Only client authorized personnel is allowed to access the VNC/VLAN/VPN. This setup prevents others from accessing the project information
- Real-time Anti-virus and SPAM protection for desktops and servers
- Annual maintenance and scheduled preventive maintenance in place for critical assets
- Adequate spares are available for all critical infrastructure, thereby minimizing downtime
Voice Calls Security
- Authorization for use of VoIP lines and is provided on a need or project basis
- VoIP is password protected
- ACD reports are generated on a weekly basis and analyzed
|