Infosec-White-Logo
Policies we Follow

Data Security Document

Shieldbyte Infosec Pvt. Ltd. (Shieldbyte) prioritizes the security of your data. We have configured technical and organizational security measures to protect data against unauthorized misuse or access. Our security measures are reviewed at regular intervals. Data is a critical asset and to ensure quality protection Shieldbyte is compliant with GDPR, ISO 27001 and AICPA SOC.

What Data do we Collect

We may gather personal data and other information from you Personal information you provide – we obtain personal information from you when you send us enquiries, participate in our surveys, register for access to the site, refer us to your contacts, leave messages on our website or use our services.

Legal Rights

Data Security

Cloud Infrastructure

Shieldbyte hosts data on Amazon Web Services (AWS). AWS is recognized for data centers that are built to withstand all types of threats and are certified for high quality and security.

Data Backup

We take backups that are securely stored, to ensure restoration of Data in case of any incident or accidental deletion leading to loss of data.

Encryption

We encrypt all personally identifiable information at rest, to protect the data against unauthorized access and to render the data unintelligible so no third party can access it.

Access Control

Role based access control prevents data falling into the hands of unauthorized users. This ensures that the Data is accessed by authorized individuals only. access is limited to only authorized personnel through password and two-factor authentication.

Data Retention

The data will be retained for a period of seven (7) years or up to the termination of the contract. The Financial information stored shall be retained for a period of three (3) years in case of prospective clients and for a period of seven (7) years or up to the termination of contract in case of existing clients. We may be required to store Your personal information where it is necessary in relation to a legal proceeding or obligation imposed on to us.

Data Disposal

The data will be disposed either after the expiry of the seven-year retention period or upon termination of contract.

error: Content is protected !!