General Security
• Information security management system and information security policies are based on ISO/IEC 27001:2005 (BS7799 Part 2:2002) security standard. Luxoft was certified on these standard on April, 2006 by LRQA
• Reservation and failover configurations for critical points (Servers, Network switches, Routers, Firewalls)
• Strong procedures for maintaining access lists and passwords, including their expiration control and scheduled change
• Personnel access restrictions and procedure management
• Antiviral protection
• Change Management
• Monitoring/Logging of information access
• Monitoring of informational / network services availability
• Removable media controls
Network Security
• Full physical and logical segregation of information and service networks
• Cisco VLAN traffic separation
• Cisco PIX firewalls with IDS at all external entry points into the site
• Strong ACL policies
• Encryption of data feeds between Customer and Vendor using VPN or/and dedicated channels
• Unified center of LAN monitoring, managing and administering
Infrastructure
• Structured cable system (SCS) in all Company buildings based on products of Legrand, Molex and Retall with optical uplinks
• CISCO active network equipment (Cisco 4500, 3500, 3700 series switches at core and distribution levels; Cisco 1700, 1800, 2600, 2800 series routers)
• Dynamic routing protocols (OSPF or EIGRP, depend on Customer requirements)
• 100/1000 Mbit switched Ethernet (Fast Ethernet, Gigabit Ethernet) and Fiber Optical LAN technology Dell Power Edge series servers are used as a standard of server hardware
• Scalability (minimum 2 times growth availability)
On-premises security
• LUXOFT Development Centers are located in dedicated physically secured areas approved by Customers
• Security guards and 24x7 video surveillance
• Electronic motion sensors, mantrap controlled entrance and exit
• Security breach alarm, coded door locks and PIN cards
Disaster Recovery and Business Continuity
• Disaster Recovery and Business Continuity Plans could be developed and tested on Customer request
Want to learn more?