| |
System Administration
Group
-
Participates in all inter group meeting as communed by the project.
-
Hardware software requirement of the project are communicated
to the SA group member.
-
The IRB meeting is conveyed in which an Author, Recorder, Moderator,
and Technical Reviewers, SEPG Member attend.
-
SA Group member performs the necessary installation of the H/W
software resources.
-
SA Group member provides necessary updates on the software.
Data
security is of foremost importance for AG Technologies' management.
AG Technologies has a robust holistic approach to security. People,
policies, procedures and tools need to be utilized to mitigate
internal and external sources of risk. AG Technologies' human
resources division conduct thorough background checks on all employees
and the company has dedicated security personnel at secured facilities.
Additionally, security policies are clearly communicated to all
personnel in mandatory training sessions. Security awareness is
a key to success of information security policies and procedure
implementation.
From
an IT management perspective, IT policies are enforced through
hierarchical access rules that ensure that all employees and even
internal IT management have only limited access to data. From
an IT infrastructure perspective, data is communicated in a highly
encrypted manner (internally and externally), and stored data
is isolated using firewall software and physically on different
systems (in secured rooms).
Looking
at the intense need for its data security and have independent view,
AG Technologies went for and successfully achieved the globally
recognized ISO 27001:2005 certification - Information
Security certification. This certification accredited by BSI - an
independent organization, member and founder of ISO (International
Organization for Standardization) - was conquered without any non-conformity
succeeding in all the information security-related topics.
The major requirements assessed are the following:
- Security management through the deployment of good practices;
- Risk management methodology;
- Information security organization and policy;
- Asset classification and control;
- Personal, physical and environmental security;
- Operations and communications management;
- Access control;
- System design and maintenance;
- Business continuity management.
Highlights
on Security @ AG Technologies
People:
- Employee
background checks
- Employee
training
- Highly-skilled
and experienced functional and technical consultants supported
by business/industry experience
- Enterprise
Application Integration - interfacing SAP to the best-of-breed
software and technology
- Consultants
trained and certified in SAP scalable solutions including Supply
Chain Management, Customer Relationship Management, Business
Warehouse, Product Life Cycle Management and SAP Workplace
Facilities:
- Security
personnel
- Physically
secured Data Centers
-
Physical and logical isolation of production, testing and support
environment
IT Systems:
- Hierarchical
access permissions for IT management
- Two
factor authentication for system access
- Rigorous
password management
- Encrypted
communications of data encrypted VPN tunnels
- Layered
Firewall security system
- Constrained
user level access and controlled Internet access for employees
- CD
and floppy drives removed from development floor systems
-
USB are blocked in org level
-
Role based access
|