Information Security Service Policy
Our foundational commitment to protecting confidential information, establishing structured risk-assessment controls, and continually refining our security posture to align with world-class cybersecurity standards.
1. Our Mission
Our mission is to:
- Protect our information and business processes.
- To enable and enhance the information security features of our software solutions provided to our customers.
2. Policy Highlights
The company aims to continuously improve its information security controls to reduce the information security risks to acceptable level, by utilizing common risk assessment methodologies, and by applying PDCA model.
PLAN
Establish security objectives, processes, and policies required to deliver secure software solutions.
DO
Implement controls, software development security, and operational practices.
CHECK
Review and monitor information security metrics based on collected data.
ACT
Execute corrective and continuous improvement actions across information security processes.
3. Information Security Framework
- A regular cycle will be used for the setting of objectives for information security, to be done yearly. This will ensure that adequate funding is obtained for the improvement activities identified. These objectives will be based upon a clear understanding of the business requirements, informed by the management review process during which the views of relevant interested parties may be obtained.
- A trust security model is implemented to ensure that Aquarius Soft adheres to our Information Security Service Policy and upholds our mission goals. For more details, please visit Trust Center Security.
- Every employee at Aquarius Soft has a responsibility for proper handling and protection of Aquarius confidential information as set out in the Policy Statements. These policies apply to the entire organization. Each policy is supported by Requirements that describe what must be done to be in compliance.
4. Continual Improvement
We are committed to continual improvement of our Information security management system:
- Review Information security metrics regularly to assess the effectiveness of information security based on collected data.
- Enhance information security processes to align with world best practices in cybersecurity.