Rainbow Tecnologia e Consultoria Ltda.

USO PÚBLICO

DO-DIR-007 Rev00 - 20/05/2024

Política de Segurança da Informação e Privacidade da Informação

1 - Objective

Our company's information security policy aims to protect the integrity, confidentiality and availability of our clients', partners' and employees' data, guaranteeing a secure and reliable environment for all operations.

nossos sistemas de controle de acesso e gestão de terceiros.

3 - Responsibilities

All employees, contractors and partners have a responsibility to follow and promote the established information security guidelines, contributing to the protection of data against internal and external threats.

4 - Access Control

We have implemented robust data access controls, ensuring that only authorized people have access to the information they need to perform their duties.

5 - Personal Data Protection

We are committed to complying with all applicable laws and regulations relating to the protection of personal data, ensuring the proper and secure handling of this information.

6 - Monitoring and Auditing

We carry out continuous monitoring and periodic audits to ensure the effectiveness of information security measures and identify potential vulnerabilities or security incidents.

7 - Education and Awareness

We promote employee education and awareness of safe data handling practices, offering regular training and resources to raise awareness of information security.

8 - Continuous Improvement

We are committed to the continuous improvement of our information security processes, systems and policies, adapting to technological developments and new security threats.

9 - Compliance and Responsibility

We strictly comply with internal and external regulations relating to information security, taking responsibility for protecting the data entrusted to us.

Aprovado pela Alta Direção.