Security Policy
Draft template. This is generic starting content, not a reviewed or binding company policy. Have Legal review and approve before publishing externally.
Integrated Retail maintains information security practices designed to protect customer and company data across our products and internal systems.
Key areas
- Access control — access to systems and data is granted on a least-privilege, need-to-know basis.
- Data protection — encryption in transit, and at rest where applicable.
- Monitoring — logging and monitoring of critical systems for suspicious activity.
- Incident response — a defined process for identifying, containing and reporting security incidents.
- Employee awareness — regular security awareness practices for staff.
Specific technical controls and audit results are available to clients under NDA upon request.