| . |
Every registered page is blocked for unauthorized users,
without having a valid ID & Password , no one can access the employee / client
details. |
| . |
Auto complete feature is desable at employee Login-Zone,
user login information details does not get stored into the local client machine,
as a result account misuse cannot occur. |
| . |
Idle session time out is only 1 minute which ensures proper
& valid usage of the registered page by the valid users. |
| . |
If login attempt fails more than 5 times, then system
will autometically block his / her ID & Password for next 20 minutes. |
| . |
If employee losses his / her password then password will
auto reset by the system and will forwarded only to employee's valid email id. |
|
|
|
|
Type of
Security |
|
|
|
Technical Security
|
|
u |
The entire site is developed by using ASP.NET with C# ,
where all the .NET inbuilt security features have been implemented |
|
u |
Genius Payroll site is developed based on n-tier architecture |
|
u |
All the business logic is encapsuated within the dynamic
link liabrary ( dll ) file , which is 100% protected |
|
u |
All transaction commands are stored into Databse
Server only |
|
u |
All sensitive information are encrypted and protected |
|
|
Basic Physical Layer Security |
|
u |
Genius Payroll system is configured in Windows Server
2003 with IIS 7.0 and .NET 3.5 Framework |
|
u |
All the IIS and Windows Server inbuilt security has been
used in our payroll system |
|
u |
Microsoft Windows Firewall , inbuilt Firewall of Windows
Server 2003 R2 is installed |
|
u |
McAfee Virus Scan Enterprise 8.5i with inbuilt Malware
/ Spyware protection |
|
u |
Scan Engine Version :5300.2777 is installed |
|
u |
Cisco Network Intrusion Prevention System ( Maintained
by the Data Center ) |
|
|
Data Security
|
|
u |
Back ups : |
|
|
All payroll data backups are taken twice in a day and are
kept in a password protected place and ti ensures data, if it is lost , can
be recovered immediately |
|
u |
Data Masking : |
|
|
All the sensitive & vital information are masked
/ encrypted within a database table to ensure that the data security is maintained
and sensitive customer information is not leaked out side the authorized environment |
|
u |
Data Erasure : |
|
|
Data Erasure Technology ( a method of software-based overwriting
that completely destroys all electronic data residing on a hard drive or other
digital media to ensure that no sensitive data is leaked when an asset retired
or reused ) is also maintained at our data center |
|
|
|
|
|
Confidentiality :
We will maintain absolute confidentiality with all documents being provided by you and shall not disclose any information. |
|