Aerozen is obligated by ethics and law to safeguard sensitive and personal information. This protection involves preventing unauthorized access and duplication of information, which is essential to the company's operations. Ensuring the confidentiality, integrity, and availability of information resources and services is also crucial. To achieve this, the company follows the Information Security Management System (ISMS), which outlines the philosophy and strategy for applying information security to minimize the risks and potential impact of security threats.
Aerozen is a leading provider of Book Keeping, Payroll Processing, Accounting and Taxation Services in India, serving customers worldwide. As a responsible organization, Aerozen has an ethical and legal obligation to protect the sensitive personal and customer information it handles. Unauthorized access to and misuse of this information can have severe consequences, which is why protecting it is a critical aspect of the company's operations. The confidentiality, integrity, and availability of information resources and services are equally important. This policy outlines the Aerozen approach to information security management and provides a framework for describing the guiding principles and responsibilities necessary to safeguard the company's information systems.
The integration of ISMS processes and controls with the organization's processes shall be facilitated through clear delineation of roles and responsibilities. Users, including employees and third-party suppliers with access to Aerozen's systems and information, are required to update themselves regularly through internal training programs and awareness initiatives on ISMS policies and procedures. It is their responsibility to comply with these policies and procedures in their respective areas of responsibility.
All employees of Aerozen are required to adhere to the guidelines and procedures outlined in the ISMS policy to ensure the security of the organization's assets. In the event of security breaches, software malfunctions, or weaknesses, employees must report incidents according to the directives outlined in the ISMS policy and Security Incident Management Procedure document. Regular awareness and training programs will be provided to employees to update them on various ISMS initiatives and encourage their active participation in compliance with ISMS controls. Employees must not interfere with any implemented security controls. The ISMS Policy Manual and Acceptable IT Usage Policy are applicable to all employees, third-party personnel, and subcontractors who require access to Aerozen assets. This document, approved by management, demonstrates the executive level's INTENT, COMMITMENT, and SUPPORT for the successful implementation of the Information Security Management System in the organization.
The primary objectives of Information Security Policy are to:
Social networking sites such as Facebook, Twitter, Yammer, LinkedIn, Flickr, YouTube, and others are online communities where people with common interests or attributes can connect. While these sites can be useful for sharing knowledge or opinions, their improper use can lead to information security breaches and potential loss of reputation or sensitive data. Therefore, access to these sites is restricted on Aerozen's internet gateways, and users can only access them with a valid business justification and approval from the relevant authorities.