Home » Company » Information Security and Privacy
MaxisIT's Information Security and Privacy function, which is part of MaxisIT's R&D organization, has certain regulatory-related responsibilities. It is foundational to all aspects of MaxisIT's business and is responsible for:

- Developing and maintaining Information Security and Privacy policies and procedures that address international directives such as ISO 27001:2005, SAS 70 Type II along with regulatory standards like 21 CFR Part 11 of US FDA, IT Act 2000 of India and Annex 11 of EU Territory; laws and regulations, such as HIPAA, EU 95/46 and others towards statutory compliance as indicated in the international directives
- Overseeing internal security testing to investigate what if scenarios for MaxisIT® products during the early stages of product development
- Managing regular network penetration tests of the MaxisIT® Enterprise Networks and taking appropriate actions for the vulnerabilities encountered, if any
- Managing penetration tests of MaxisIT® software products and taking appropriate actions for the vulnerabilities encountered, if any
- Conducting regular internal training on Information Security and Privacy for employees as well as partners
- Assuring necessary and sufficient controls as get identified and implemented to ensure integrity, confidentiality and availability of client information in a global environment
- Developing, testing and maintaining the MaxisIT's Business Continuity plans
- Disseminating information on new Information Security and Privacy regulations, directives and laws and absorbing the same into the organization's information security system
- Conducting internal investigations of Information Security and Privacy events and taking appropriate and relevant actions