ISO 9001:2008
ISO 27001:2005
SECURITY AND CONFIDENTIALITYDOCSOLUTIONS regards the information it manages for its clients as not only their most valuable asset, but also the center of gravity of each company’s mission. Aware of the double importance of the information it manages through its various services, DOCSOLUTIONS has developed diverse mechanisms, policies and procedures to guarantee the confidentiality and security of the physical and digital information in its safekeeping.
Security begins with controlled access to DOCSOLUTIONS' seven Document Centers. Each center is equipped with fire prevention, detection and suppression systems, closed circuit TV monitoring, anti-seismic racks, intruder detection and alarm systems, and 24-hour private security, as well as the security offered by the industrial parks where they are located. A Disaster Recovery Plan (DRP) is in place and the facilities have emergency electrical plants. The security plan is founded on cutting-edge backup infrastructure made up of hardware, software and telecommunications. Stored information is managed and backed up under the security protocols required by our ISO 9001:2008 and ISO 27001:2005 certifications and includes online mirror databases, external tape backup and their rotation among DOCSOLUTIONS vaults external to the Computer Center.
DOCSOLUTIONS is bound by Non-Disclosure Agreements (NDAs) with each of its clients, supported by the respective guaranties, to keep all information to which it has access in total secrecy. While DOCSOLUTIONS staff has access to sensitive customer information, unlike a client’s employees our staff has no personal interest in client information---the usual reason for leaks. Nevertheless, all our employees undergo stringent background checks, reference checks, and psychometric testing in addition to testing for the relevant job skills. They sign confidentiality agreements and are bonded to protect the privacy of information to which they might have access. Beyond this, there are multiple controls and protocols for access to information; systems and mechanisms that restrict physical access limit employee access to information being stored or processed. Finally, the implementation by DOCSOLUTIONS of structured, systematic procedures for managing client files, up to their final destruction, helps organizations foster internal awareness of the importance of information. This awareness translates into information control practices which go beyond the files themselves to the very culture of the organization. DOCSOLUTIONS' file destruction services underline the importance of the security and confidentiality of organizational information. These are among the reasons the most modern companies use neutral third parties to manage their information.
|