Effective Date: January 29, 2026 5:15 AM
Governing Law: State of Colorado, United States
1.0 PURPOSE
This Security Policy defines how GYNTEKBUSINESS LTD (“Company,” “We,” “Our,” “Us”) protects client and operational data against unauthorized access, misuse, or loss. Our security approach follows industry-recognized standards for confidentiality, integrity, and availability.
2.0 FRAMEWORK ALIGNMENT
GYNTEKBUSINESS maintains security controls aligned with:
- General Data Protection Regulation (GDPR)
- ISO/IEC 27001 Information Security Management
- National Institute of Standards and Technology (NIST) Cybersecurity Framework
3.0 DATA PROTECTION MEASURES
- SSL/TLS encryption for all data transmission
- Encrypted storage of backups and databases
- Role-based access control and multi-factor authentication
- Regular security audits and system updates
- Logged administrative activity and monitoring
4.0 INCIDENT RESPONSE
If a security event occurs, it is logged, contained, and investigated immediately. Verified breaches are reported to affected parties and relevant authorities within 72 hours.
5.0 STAFF ACCESS & CONFIDENTIALITY
Managers, Supervisors, Team members and contractors are granted access strictly by necessity and sign confidentiality agreements before handling sensitive data.
6.0 CLIENT RESPONSIBILITIES
Clients must safeguard login credentials and report suspicious activity promptly. Unauthorized access resulting from client negligence falls outside the GYNTEKBUSINESS Company liability.