|
Quatrro takes the issue of protecting Client Confidentiality very seriously. The company has implemented comprehensive security measures to ensure that no client data is accessed by anyone who is not authorized to have such access. All employees who deal with client material must sign non-disclosure agreements.
We will not assign people to a project for one client if we are advised that a separate project, for the same or a different client, may create a conflict of interest or raise confidentiality concerns.
In light of Quatrro's history of managing financial data for large banks and corporations, we are very sensitive to the issues of data security and client confidentiality, regardless of the actual content of that data. Quatrro treats client data with careful regard for the client's confidentiality needs and concerns. The company has implemented comprehensive security measures to ensure that client data is not accessed by unauthorized personnel, and that data which is accessed is only utilized to the extent permitted by the scope of our undertaking with the client.
Training
US licensed lawyers provide training to Indian based legal professionals (lawyers and paralegals) about the issues surrounding, and the requirements governing, Client Confidentiality from a United States and European perspective. Training is supplemented periodically with "lessons learned" from ongoing work, with careful attention paid to ensure that examples used for training do not reveal protected information.
Information Technology Precautions
- Confidentiality of customer data on LAN network: A separate VLAN (Virtual Local Area Network) is created for each client project. Also, we apply ACL (Access Control List) filters to restrict to and from traffic from a customer assigned VLAN to the Internet.
- Confidentiality of customer data stored on local servers: All data resides on centralized servers. The servers are NTFS (New Technology File System) partitioned, and access is restricted with Active Directory authentication. Quatrro employees are not allowed to store any data on local systems or portable drives.
- Confidentiality of customer data on workstations: In order to control access to the workstations, the OS (Operating System) on each is hardened and group policies are applied. Only Active Directory user IDs are allowed to login to the workstations, and users can only login to the group in which their membership has been established.
International Standards
The Indian operations of Quatrro Legal Solutions in Gurgaon, India, have achieved ISO 27001 certification. This is an international standard that deals with information security and data protection. The Company have also been independently audited and found compliant with the United Kingdom's Data Protection Act 1998, which deals with security requirements that must be applied to protect personal data.
CONTACT US
If you have any questions about our focus on Confidentiality, or if you would like further information, please CONTACT US.
|