PoweredBySA Security
PoweredBySA prioritizes meeting customer needs while safeguarding the security, confidentiality, availability, privacy and integrity of customer data through a comprehensive three-pronged information security strategy. This strategy encompasses physical security layers, network security layers, and security policy layers implemented across both internal and external environments, integrating active and passive protective measures. By adopting this approach, clients are assured of reliable and trusted solutions, allowing them to concentrate on eDiscovery without concerns about the security and privacy of electronically stored information.
PoweredBySA employs a holistic physical security approach, encompassing employee qualifications, secure environment access and equipment, and adherence to industry best practices. The company follows rigorous protocols for access management, regularly updates certificates, keys, and passwords, utilizes multi-factor authentication and endpoint encryption, and supports critical network security features. Security policies at PoweredBySA are crafted to minimize risk, instilling confidence in customers across all aspects of data security. Recognizing the significance of security in Cyber Discovery, Information Governance, and eDiscovery, professionals can trust PoweredBySA to uphold the highest standards and protect data throughout the information lifecycle.
PoweredBySA Security
PoweredBySA places a strong emphasis on meeting customer needs by offering solutions, processes, and protocols that prioritize the security, confidentiality, availability, privacy, and integrity of customer data. This commitment is realized through a comprehensive three-fold information security approach, encompassing physical security layers, network security layers, and security policy layers. These layers are strategically applied to both internal and external environments, integrating active and passive protection measures, including two-factor authentication and user-level permissioning.
Designed to deliver trusted and reliable solutions, this information security approach enables our customers to concentrate on electronic discovery without diverting attention to concerns about the security and privacy of electronically stored information. The effectiveness of this approach is further validated through certifications, attestations, and compliance audits.
Recognizing that security is an ongoing process rather than a one-time achievement, PoweredBySA is dedicated to upholding and validating the highest standards across every level, from CEO to contractor. This ensures that our customers can have peace of mind, confident that their data is secure throughout the entire information lifecycle.
Physical Security: From Employees to the Enterprise
Employee and Contractor Physical Security
PoweredBySA adopts a comprehensive physical security approach, aligning employee qualifications, practices, and secure environment access and equipment. The company conducts thorough background screening and follows best practice Human Resource (HR) processes to guarantee that all employees and contracted individuals are adequately qualified, well-versed in security policies and procedures, and regularly updated and evaluated on physical security requirements.
Updates and evaluations encompass various aspects, from workspace audits to formal security training. Importantly, employee and contractor security responsibilities persist beyond project completion or termination and are clearly documented in our employee handbook.
Employee Security Considerations
- Background Checks
- Non-Disclosure Agreements
- Conflict Checks
- Asset Management Controls
- Physical and Environmental Security
- Access Control
- Information Security Incident Management
Enterprise Environments and Equipment
PoweredBySA currently operates from secure international standard locations. All PoweredBySA facilities implement and monitor company security policies to ensure that only qualified individuals (employees, contractors, and visitors) are granted access to secure areas for entering, accessing, and interacting with customer data. These secure areas are locked and controlled through a combination of access controls, security cameras, and routine auditing to proactively prevent unauthorized access.
Access to all equipment is restricted, with limited IT personnel having access for on-site maintenance. Furthermore, our secure environment is designed to compartmentalize potential combustion events, addressing them with full fire detection and suppression systems. Regular inspections are conducted to ensure the maintenance of physical protection of secure environment facilities not only from fires but also from floods, earthquakes, explosions, civil unrest, and other potential disasters.
Complementing this physical security layer are security policies that have been developed and routinely tested to ensure no vulnerabilities exist at any level of our physical security structure. Additionally, removable media is exclusively used in controlled areas and is tracked, managed, and stored following IT asset management standards and procedures. Unusable and retired physical media is managed to customer specifications, including data removal, data disablement (irrecoverable and inaccessible), and shredding by approved vendors.
Network Security: From Endpoint to Encryption
PoweredBySA employs multiple layers of security to ensure the protection of all data against unauthorized access, including encryption in motion and at rest. Key security measures involve the deployment of hardware firewalls for network protection. Additionally, case access is determined and managed collaboratively by a project manager and the IT component of our operations team. These network security elements, complemented by our physical and policy layers of security, collectively ensure the privacy, confidentiality, availability, and integrity of customer data.
From an access management perspective, PoweredBySA strictly adheres to protocols in all enterprise environments. Regular updates of certificates, keys, and passwords align with industry best practices. Furthermore, PoweredBySA provides robust support for critical network security features, and our Operations and IT Team security experts can furnish detailed information on these essential security measures upon request.
Security Policies
PoweredBySA security policies are developed to detect, identify, locate, report, and remedy any potential vulnerability in our physical and network security layers of our security structure.
Security Policies: Key Areas of Focus
- BYOD Security Policy
- Human Resource Security
- Information Classification and Handling
- Asset Retention and Disposal
- Media Handling
- Access Control Policy
- Physical & Environmental Security Policy
- Change Management Policy
- Security Incident Management Policy
- Data Backup, Retention and Disposal Policy
- Data Security Policy
- Capacity Management Policy
- System Acquisition, Development, Planning and Maintenance Policy
- Network Security Policy
- Secure Baseline & Vulnerability Management
- Security Patch Management Policy
- Audit Logging and Monitoring Policy
- Network Time Protocol
- Anti-Virus Policy
- Email Security Policy
- Third-party Management Policy
- Cloud Security Policy
- Cryptography Policy
