Software Technology Guidance Corp

STG Security Policy

Effective Date: 31 October 2023

This Security Policy outlines the comprehensive security measures and practices implemented by Software Technology Guidance Corp (referred to as “we,” “us,” or “our”) to ensure the confidentiality, integrity, and availability of data and services on our website. Our commitment to security is a fundamental part of our responsibility to protect your information and provide a safe online experience.

Table of Contents

  1. Information Security Principles
  2. Data Encryption
  3. Access Control
  4. Secure Development
  5. Incident Response
  6. Third-Party Security
  7. User Security Responsibilities
  8. Security Awareness and Training
  9. Physical Security
  10. Security Compliance and Auditing
  11. Changes to This Security Policy
  12. Contact Us

1. Information Security Principles

We adhere to the following information security principles to safeguard your data:
– Confidentiality: Ensuring that only authorized individuals can access sensitive information.
– Integrity: Protecting data from unauthorized tampering or alteration.
– Availability: Ensuring that data and services are accessible when needed.
– Privacy: Protecting the personal information of our users in accordance with relevant data protection laws and regulations.
– Compliance: Adhering to applicable security standards and regulations.

2. Data Encryption

We use strong encryption to protect data transmitted between your device and our website. This includes the use of secure protocols (e.g., HTTPS) to encrypt data in transit and encryption techniques to safeguard data at rest.

3. Access Control

Access to sensitive data and systems is restricted to authorized personnel only. We employ role-based access control (RBAC) to ensure that individuals can access only the data necessary for their roles. Authentication mechanisms such as strong passwords and multi-factor authentication (MFA) are enforced.

4. Secure Development

We follow secure software development practices to identify and mitigate security vulnerabilities during the development process. This includes regular code reviews, vulnerability assessments, and the use of secure coding standards.

5. Incident Response

We have established an incident response plan to handle security incidents efficiently and minimize potential damage. In the event of a security breach, we will promptly investigate, mitigate, and notify affected parties as required by applicable laws.

6. Third-Party Security

We evaluate and select third-party service providers and partners based on their commitment to security and privacy. We hold them to high-security standards through contractual agreements, and we monitor their compliance.

7. User Security Responsibilities

While we are committed to providing a secure environment, users also play a crucial role in security. We encourage users to protect their accounts, use strong and unique passwords, and report any security concerns promptly.

8. Security Awareness and Training

We regularly train our employees on security awareness and the latest security threats and best practices. We foster a security-conscious culture throughout our organization.

9. Physical Security

We implement physical security measures to protect our data centers, server rooms, and other critical infrastructure. Access to these facilities is tightly controlled and monitored.

10. Security Compliance and Auditing

We regularly assess our security practices and systems to ensure compliance with industry standards and relevant regulations. We conduct security audits, vulnerability assessments, and penetration testing to identify and address potential weaknesses.

11. Changes to This Security Policy

We may update this Security Policy to reflect changes in security practices, and emerging threats, or to comply with legal requirements. Any changes to this policy will be posted on our website with an updated effective date.

12. Contact Us

If you have any questions, concerns, or requests related to our security practices or this Security Policy, please contact us at:
Software Technology Guidance Corp
6100 Greenland Rd #1001, Jacksonville
FL 32258, USA
+1 (904) 373-4331
info@stgcs.com

Thank you for trusting us with your security. We are dedicated to maintaining the highest level of protection for your data and services.