Security Policy
Information about how Kimeur Labs protects your data and maintains security across our systems.
Last updated: May 15, 2025
1. Introduction
At Kimeur Labs, we take the security of your data seriously. This Security Policy outlines the measures we have in place to protect your information and our systems from unauthorized access, alteration, or disclosure.
2. Data Protection Measures
We implement and maintain the following security measures to protect your data:
- Encryption of sensitive data both in transit and at rest using industry-standard protocols.
- Regular security assessments and penetration testing of our systems and infrastructure.
- Restricted access controls based on the principle of least privilege.
- Multi-factor authentication for accessing critical systems and data.
- Regular security updates and patches for all systems and software.
- Physical security measures at our data centers and office locations.
3. Employee Security Training
All Kimeur Labs employees undergo regular security awareness training that includes:
- Data protection best practices.
- Phishing awareness and prevention.
- Password management and secure authentication practices.
- Incident reporting procedures.
- Secure handling of client and sensitive information.
4. Third-Party Assessment
We conduct thorough security assessments of our third-party vendors and partners to ensure they meet our security standards. This includes:
- Review of security policies and procedures.
- Verification of compliance with relevant industry standards and regulations.
- Assessment of data protection measures.
- Regular monitoring and reassessment of security controls.
5. Incident Response
In the event of a security incident, we have a comprehensive incident response plan that includes:
- Immediate containment and assessment of the incident.
- Investigation to determine the scope and impact.
- Notification to affected parties in accordance with applicable laws and regulations.
- Implementation of corrective actions to prevent similar incidents.
- Continuous improvement of security measures based on lessons learned.
6. Compliance
We comply with applicable security standards and regulations, including:
- ISO 27001 (Information Security Management).
- SOC 2 Type II (Service Organization Control).
- GDPR (General Data Protection Regulation).
- CCPA (California Consumer Privacy Act).
- Industry-specific regulations as applicable.
7. Security Updates
We regularly update our security measures to address emerging threats and vulnerabilities. This includes:
- Continuous monitoring of security advisories and threat intelligence.
- Prompt application of security patches and updates.
- Regular review and enhancement of security controls.
- Adaptation to evolving security best practices and standards.
8. Reporting Security Concerns
If you discover a security vulnerability or have concerns about the security of our systems or your data, please contact us immediately at security@kimeurlabs.com. We appreciate your assistance in keeping our services secure.
9. Changes to This Security Policy
We may update our Security Policy from time to time. We will notify you of any significant changes by posting the new Security Policy on this page and updating the "Last Updated" date at the top.
10. Contact Us
If you have any questions about our Security Policy, please contact us.