
Trust. We build our reputation on your security.
Jalasoft goes to extraordinary lengths to protect our client’s IP interests. And you can trust that the team dedicated to your project has your best interest at heart.
We approach security maintenance in two areas: Asset Management and Human Resources.
Asset Management:
Dedicated Physical Assets—Each engineer is provided a dedicated workstation with enough to resources to run multiple instances of VMware virtual machines. Machines are re-imaged at the end of each project. Project Isolation on Enterprise Apps—For projects using Jalasoft applications for bug tracking, test case management, and other processes that must remain secure, access is tightly managed using application ACL’s, Group Policy, and unique installations. Source Control—Source Code is managed by the client on client systems in the US. Data is transferred via dedicated, encrypted connections from Jalasoft to the client’s facility. Physical Separation of teams—For teams with even a slight risk of IP conflict, we locate them in separate offices. There is no physical interaction between these teams during the business day. |
Human Resources:
Separation of Duties between Engineers and Management:
Engineers—We do not share resources between projects, especially in cases where IP conflicts may occur. When assigning new resources to a project, we look for IP contamination from previous projects. If there is a risk, that person is excluded from project. Management—When assigning Managers and Project Administrators, we explicitly separate them based on the nature of the projects. A Manager or PA will never work on two competing projects. IP Training Classes—One of the standard classes that we teach via the Foundation discusses the definition, values, and importance of protecting Intellectual Property. Each Jalasoft employee is required to take this course before joining a project team. Non-Disclosure Agreements—All Jalasoft engineers are required to sign Jalasoft Non-Disclosure Agreements enforceable in both Bolivia and the United States. |
Networking Infrastructure:
Subnetting—Our teams operate on unique project subnets that are dedicated to your project, and help separate and protect your assets. It ensures that no access is given to anyone who is not directly connected to your project. Point-to-point VPN—We maintain a dedicated VPN connection between our facility and yours. This VPN access is always on, and encrypted using standard protocols and Cisco PIX/ASA hardware. Barracuda Firewalls—To protect your data from outside attacks, we use Barracuda Networks devices for messaging, spam, and web filtering. Microsoft Security and Management—For additional proven protection, we are an early adopter of the Forefront and System Center application suites available through our partnerships with Microsoft, and our membership in the Microsoft System Center Alliance. |
With Jalasoft, your security is our highest priority, always.