Data Security
BRG’s Data Security Policies
- All connections to the outside world goes through a Firewall and is monitored and maintained on a regular basis.
- All system passwords are complex and changed on a regular basis
- All data is stored on redundant servers and backed up on a regular basis
- Data that is transmitted across public networks are encrypted
- All systems are protected against malware and viruses with regular updates to anti-virus software
- All systems and applications are updated regularly for security updates
- Systems and processes are limited by security groups – based on need to know and job responsibilities
- Each user with access to data has a unique user ID and a complex password that changes every 90 days.
- System screens lock after 3 minutes of inactivity
- We enforce a clean desk policy that states that sensitive information is never left unattended, never within plain view and is stored within a locked cabinet inaccessible but to authorized individuals.
- Data is destroyed securely by shredding it
- Systems track and monitor all access to the network
- Surveillance systems are installed
- All security systems and processes are tested for failure on a regular basis
- All Staff is informed of these policies and have signed a written agreement to uphold them
- All business partners and hosting providers adhere to these policies
