Security Management
A key inhibitor to China as a leading software outsourcing destination is concern over Intellectual Property Protection (IP).
Bleum addresses these concerns on a number of levels and throughout the company adheres to the highest systems of security management. At a corporate governance level Bleum was accredited ISO 27001 in August 2006, by BSI (British Standards Institute).
In addition to complying with ISO 27001, from a corporate perspective we address security on three levels:-
Operational
- CCTV cameras cover every entrance and every room
- Individual card and PIN access for all employees
- Biometric security on server rooms
- Hardware/software installation is strictly monitored
- Personal PCs/storage devices forbidden
-
Legal
- Chinese Government has signed the Agreement of Trade-Related Aspects of Intellectual Property Rights (TRIPs Agreement). There is a TRIPs court in Shanghai
- All staff subject to security background checks
- Employees commit to IP protection
- Individuals, upon customer request, sign NDA's
-
Cultural
- Individual staff at Bleum are encouraged to act with integrity and responsibility when it comes to IP protection.
- We educate employees on Bleum's security compliances and Bleum's Change Management Policy.
- We actively encourage that IP protection is practiced and implemented.
In addition to ISO 27001 and the cultural, legal and operational security measures, we work with customers to provide additional security as required. We offer a range, adaptable to individual needs.
- Basic Security - ie. controlled access throughout facility, firewall and anti-virus protection, regular backup and offsite storage, and non-use of portable media.
- Enhanced Security - ie. virtual private networks between the customer and Bleum networks and confidentiality agreements with each developer.
- Advanced Security - ie. a separate controlled access workspace, separate physical networks and additional background checks for each developer.
