Information Security Policy

Introduction and Objective

The purpose of the document is to provide adequate protection for information assets of UMBO IDTech Private Limited and its stakeholders, UMBO IDTech Private Limited has built a strong Information Security Management System (ISMS) in alignment with global standard ISO/IEC 27001:2022, which includes the respective policies to be followed in a diligent, consistent, and impartial manner. UMBO IDTech Private Limited will implement necessary controls and practices at all levels to protect the confidentiality and integrity of information stored and processed on its systems and ensure that information is available to authorized persons as and when required.
The objective of this Policy is to outline the guiding principles for planning, establishing and continually improving the Information Security Framework within UMBO IDTech Private Limited.

Scope

The policy applies to information security across all internal and business information systems, services, and related practices in all locations.

Ownership

This policy document is owned by the Information Security head and authorised by UMBO IDTech management.

Information Security Policy

UMBO IDTech Private Limited policy statement as follows:

“UMBO IDTech Private Limited is committed to protecting information in terms of confidentiality, integrity, and availability of all the information assets of our organization, aiming to achieve adherence to contractual, legal, and regulatory requirements by adopting continual improvement methods and best practices.”

This will be owned by the Information security Head and shall be reviewed and updated annually or when necessary, in accordance with the principles described in ISO/IEC 27001:2022

  • There shall be a Steering team consisting of identified senior members to manage, control, and ensure continual improvement of Information Security at UMBO IDTech Private Limited (Riskcovry).
  • This Policy is approved by the Information Security Head. This Policy shall be communicated and made available to all UMBO IDTech Private Limited (Riskcovry) employees, third party staff/contractors hired by UMBO IDTech Private Limited (Riskcovry), and other relevant interested parties.
  • To ensure the continual improvement of ISMS, the Infosec Team shall meet on a yearly basis to discuss and review overall effectiveness and improvement of Information Security by evaluating review inputs from spocs and consider industry best practices for the organization.
  • Periodic awareness campaigns and programs on Information Security shall be carried out when deemed necessary

References

ISO/IEC 27001:2022 standard

Contact Us

We'll get back to you in 1-2 business days.