2CX

ISMS

Policies by Topic

Set of topic-specific information security policies underpinning 2CX's operation, covering the full data lifecycle.

01

Scope

2CX applies a comprehensive policy that covers all information used in the course of its activities, binding on the organization, employees and partners.

02

Relationships with partners

Relationships with collaborating entities are backed by service agreements, including clauses guaranteeing the proper use of information and confidentiality agreements.

03

Data lifecycle

The policy applies at every stage: collection, generation, distribution, storage, processing, handling, transport, consultation and destruction, as well as to the corresponding systems.

04

Core security components

  • Confidentiality: data and systems accessed only by authorized people
  • Integrity: accuracy against accidental or fraudulent alteration, loss or destruction
  • Availability: information and systems available when needed
05

Topics and controls covered

The policy covers access control, physical security, asset management, information transfer, device configuration, network security, incident management, backup, encryption, information classification, vulnerability management and secure development.

Need to talk to the Governance & ISMS team?

seg@2cx.com.br | dpo@2cx.com.br