Log in to use authoring capabilities
  • Open site menu Sites
  • HCL Technologies homeHCL Technologies home
{}
start portlet menu bar

Web Content Viewer

Display content menu Display portlet menu
end portlet menu bar
Quotes Carousel
List
List 2
Page
Information Security
    • Information Security
  • Contact Us
 
  • HCL Logo
  • HCLTech
  • About Us
    • Overview
    • Careers
    • HCL Ambassadors
    • Newsroom
    • Analyst Reports
    • Trust Center
  • Language EN
    • FR
    • EN
    • IT
    • DE
    • PT
    • JP
    • ES
    • CN
    • RU
HCL Software Logo
  • Digital Transformation  
    • Digital Transformation Overview Technology that aligns people and systems
    • Commerce Enterprise e-commerce for B2C and B2B
    • Connections Enterprise collaboration platform
    • Discover Behavioral insights for customer journeys
    • Domino Rapid application development platform
    • DX The DXP for the moments that matter
    • Sametime Enterprise secure video meetings and chat
    • Unica Enterprise marketing automation platform
    • Volt MX Multi-experience low code app dev

    Other Featured Products

    • HCL Now
    • SoFy
    • Cloud Native
    • Mainframe Solutions
    • Secure DevOps
    • Home
    • Data
      Data and Analytics
    • AI & Automation
      AI and Automation
    • Enterprise Security
      Enterprise Security
    • Help & Support
  • Data and Analytics  
    • Data, Analytics and Insights Overview Trusted, flexible and easy-to-use platforms
    • Actian Empowers the data-driven enterprise
    • Avalanche Cloud Data Platform Data services suite; flexible deployment
    • DataConnect Low-code integration platform
    • Ingres Transactional Database Legendary transactional RDBMS
    • HCL OneDB Build database-driven enterprise apps
    • Vector Analytics High-performance BI and analytics
    • Zen Edge Data Management Embeddable edge data management

    Other Featured Products

    • HCL Now
    • SoFy
    • Cloud Native
    • Mainframe Solutions
    • Secure DevOps
    • Home
    • Digital
      Digital Transformation
    • AI & Automation
      AI and Automation
    • Enterprise Security
      Enterprise Security
    • Help & Support
  • AI and Automation  
    • AI and Automation Overview Humanizing AI to solve real-world problems
    • Automation Power Suite Accelerate IT and business automation
    • DRYiCE AI foundation for the digital enterprise
    • Secure DevOps Automated testing and security scanning

    Other Featured Products

    • HCL Now
    • SoFy
    • Cloud Native
    • Mainframe Solutions
    • Secure DevOps
    • Home
    • Digital
      Digital Transformation
    • Data
      Data and Analytics
    • Enterprise Security
      Enterprise Security
    • Help & Support
  • Enterprise Security  
    • Enterprise Security Overview Security from application to endpoint
    • AppScan Scans for Application Vulnerabilities
    • BigFix Secure endpoint management

    Other Featured Products

    • HCL Now
    • SoFy
    • Cloud Native
    • Mainframe Solutions
    • Secure DevOps
    • Home
    • Digital
      Digital Transformation
    • Data
      Data and Analytics
    • AI & Automation
      AI and Automation
    • Help & Support
  • Products  
    • Alphabetical List
    • Industry Software Solutions
    • Industries
    • AI and Automation
    • Automation Power Suite
    • DRYiCE
    • Secure DevOps Network performance accelerator
    • Enterprise Security
    • AppScan Efficient invectory management
    • BigFix Secure endpoint management
    • Other Featured Products
    • Cloud Native
    • HCL Now
    • Mainframe Solutions
    • Sofy
    • Secure DevOps
    • Data and Analytics
    • Actian
    • Avalanche Cloud Data Platform
    • DataConnect
    • Ingres Transactional Database
    • Vector Analytics
    • OneDB
    • Zen Edge Data Management
    • Digital Transformation
    • Commerce
    • Discover
    • DX
    • Unica
    • Connections
    • Domino
    • Sametime
    • Volt MX
    View All Products forward-arrow
    • Telecom & 5G
    • HCL Augmented Network Automation (SON)Intelligent RAN automation platform
    • HCL iCE.XIntelligent device management
    • HCL NFV Acceleration Network performance accelerator
    • HCL X-Haul Complete modern IP suite
    • HCL SMARTWiFi Intelligent WiFi cloud platform
    • Field Service
    • Quest Informatics Solutions Efficient inventory management
    • Entreprise Cloud AI
    • HCL IntelliServiceEmpowers the data-driven enterprise
    • HCL IntelliSearchEntreprise cognitive search
    • Digital Manufacturing
    • HCL CAMWorksCAM for machining productivity
    • HCL DFMProCAD integrated Design-for-Manufacturing platform
    • HCL GloviusModern lightweight CAD Viewer
    • Banking and Financial Services Trusted solutions for banking
    • Healthcares Deliver new patient experiences
    • Insurance Improve policyholder experiences
    • Manufacturing Transform traditional manufacturing
    • Retail Meet changing consumer needs
  • Learn & Support  
    • Support
    • Knowledge Base
    • Product Documentation
    • Ask the Community
    • Learn
    • Success Stories
    • Event
    • Blog
  • Partners
  • Contact us
HCLSoftware Logo
  • Digital Transformation
    • Digital Transformation overviewTechnology that aligns people and systems
    • Commerce Enterprise e-commerce for B2C and B2B
    • ConnectionsEnterprise collaboration platform
    • DiscoverBehavioral insights for customer journeys
    • DominoRapid application development platform
    • DXThe DXP for the moments that matter
    • SametimeEnterprise secure video meetings and chat
    • UnicaEnterprise marketing automation platform
    • Volt MXMulti-experience low code app dev
    • Other Featured Products
    • HCL Now
    • SoFy
    • Cloud Native
    • Mainframe Solutions
    • Secure DevOps
  • Data and Analytics
    • Data, Analytics and Insights OverviewTrusted, flexible and easy-to-use platforms
    • ActianEmpowers the data-driven enterprise
    • Avalanche Cloud Data PlatformData services suite; flexible deployment
    • DataConnectLow-code integration platform
    • Ingres Transactional Databaselegendary transactional RDBM
    • HCL OneDBBuild database-driven enterprise apps
    • Vector AnalyticsHigh-performance BI and analytics
    • Zen Edge Data ManagementEmbeddable edge data management
    • Other Featured Products
    • HCL Now
    • SoFy
    • Cloud Native
    • Mainframe Solutions
    • Secure DevOps
  • AI and Automation
    • AI and Automation Overview Humanizing AI to solve real-world problems
    • Automation Power SuiteAccelerate IT and business automation
    • DRYiCEAI foundation for the digital enterprise
    • Secure DevOpsAutomated testing and security scanning
    • Other Featured Products
    • HCL Now
    • SoFy
    • Cloud Native
    • Mainframe Solutions
    • Secure DevOps
  • Enterprise Security
    • Enterprise Security OverviewEnterprise Security
    • AppScanScans for Application Vulnerabilities
    • BigFixSecure endpoint management
    • Other Featured Products
    • HCL Now
    • SoFy
    • Cloud Native
    • Mainframe Solutions
    • Secure DevOps
  • Products
    • Alphabetical List
      • AI and Automation
      • Automation Power Suite
      • DRYiCE
      • Secure DevOpsNetwork performance accelerator
      • Data and Analytics
      • Actian
      • Avalanche Cloud Data Platform
      • DataConnect
      • Ingres Transactional Database
      • Vector Analytics
      • OneDB
      • Zen Edge Data Management
      • Digital Transformation
      • Commerce
      • Discover
      • DX
      • Unica
      • Connections
      • Domino
      • Sametime
      • Volt MX
      • Enterprise Security
      • AppScanEfficient invectory management
      • BigFixSecure endpoint management
      • Other Featured Products
      • Cloud Native
      • HCL Now
      • Mainframe Solutions
      • Sofy
      • Secure DevOps
      • View All Products
    • Industry Software Solutions
      • Telecom & 5G
      • HCL Augmented Network Automation (SON)
      • HCL iCE.X
      • HCL NFV AccelerationNetwork performance accelerator
      • HCL X-HaulComplete modern IP suite
      • HCL SMARTWiFiIntelligent WiFi cloud platform
      • Entreprise Cloud AI
      • HCL IntelliService
      • HCL IntelliSearch
      • Digital Manufacturing
      • HCL CAMWorks
      • HCL DFMPro
      • HCL Glovius
      • Field Service
      • Quest Informatics SolutionsEfficient inventory management
    • Industries
      • Banking and Financial ServicesTrusted solutions for banking
      • HealthcaresDeliver new patient experiences
      • InsuranceImprove policyholder experiences
      • ManufacturingTransform traditional manufacturing
      • RetailMeet changing consumer needs
  • Learn & Support
    • Learn
    • Success Stories
    • Event
    • Blog
    • Support
    • Knowledge Base
    • Product Documentation
    • Ask the Community
  • Partners
  • Contact us
  • About Us
    • Overview
    • Careers
    • HCL Ambassadors
    • Newsroom
    • Analyst Reports
    • Trust Center
  • HCLTech
  • Contact us
  • Language EN
    • FR
    • EN
    • IT
    • DE
    • PT
    • JP
    • ES
    • CN
    • RU
  • HCL Logo

Information Security Policy

HCLSoftware is a division of HCL Technologies that develops and delivers a next generation portfolio of enterprise grade software-based offerings with flexible consumption models, spanning traditional on-premises software, Cloud based PaaS, SaaS and bundled managed services.

HCLSoftware is committed to protecting the critical information assets by implementing and maintaining an Information Security Management System (ISMS) to help ensure that its applicable information security objectives are met, and the ISMS is able to adapt to internal and external changes.

The goal of the ISMS is to protect HCLSoftware and its customers information assets from threats identified, whether internal or external, deliberate or accidental.


The Objectives of Information Security Are:

  • Maintain the confidentiality of the information such that only authorized persons have access.
  • Ensure the integrity of information.
  • Arrange for the availability of information such that only authorized persons can access the information, assets and systems whenever required.

The HCL SW aligns with the ISO/IEC 27001:2013 as a base security standard and extends to other security standards, for example ISO 27017, ISO 27018, SOC 2 Type II, PCI and HIPAA.


HCL SW Has an Established Information Security Governance Structure to Effectively and Efficiently Manage the ISMS, Inclusive Of:

  • Identification of information assets.
  • Management of risks to an acceptable level through the design, implementation, and maintenance ofrisk treatment plans.
  • Communication of information security objectives and performance in achieving these objectives.
  • Development of security awareness programs and training as appropriate.
  • Compliance with local laws and regulations and contractual obligations as relevant to Information Security.

This Information Security Policy Is Supported by Specific Internal Policies in the Following Aspects of Security Management:

  • Risk Management – Risks are managed in a standard lifecycle with status reported to senior management at regular intervals.
  • Human Resource – Includes controls around culture, mandatory annual trainings, communication, performance evaluation process and termination process.
  • Physical and Environmental Security – Includes building perimeter security as well as secure protection mechanisms for internal offices, infrastructure, data center/ server rooms.
  • Supplier Management – Includes vendor risk assessment and formal agreements with details of any SLAs required on the supplied product or service.
  • Information Security Aspects of Business Continuity - Includes details used to support backup, business recovery and continuity.
  • Internal Audit & Compliance – A dedicated team to manage Internal Audit and management of compliance.
  • Asset Management – A formally managed register for all assets in HCLSoftware’s environments. Each asset has a structured set of attributes as its definition.
  • Access Controls - Includes the definition of unique user ID’s and formal password controls.
  • Cryptography – encryption standards are applied.
  • Communication Controls [Networks and Firewalls] – Includes details of the protection levels set and the restricted controls for such vital resources.
  • System Acquisition, Development, Maintenance – Systems acquisition, development and maintenance of products and environments is managed per policy.
  • Information Security Incident Management – Security incidents are captured and managed in a structured lifecycle.
  • Security Readiness Standard, Provisioning and Deprovisioning – A minimum security standard is in place for all devices being provisioned to or de-provisioned from its infrastructure.
  • Patch Management – Patches are applied to a timeframe based on the severity of the vulnerability.
  • Security Monitoring and Logging – Logs are collected and reviewed by the dedicated Security Operation Center (SOC) team to identify alerts of unauthorized activity.
  • Vulnerability Scanning / Penetration Testing – Independent Penetration Testing is conducted a minimum of once per year.
  • Health Check of Environments / Devices – This is based on the CIS Benchmark controls.

HCL Software Logo
Contact us

hclsoftware logo transparent
  • Columns group1
    • Digital Transformation
    • Data, Analytics & Insights
    • AI & Intelligent Automation
    • Enterprise Security
  • Products
    • Digital Transformation
      • Commerce
      • Discover
      • DX
      • Unica
      • Connections
      • Domino
      • Sametime
      • Volt MX
    • AI and Intelligent Automation
      • Automation Power Suite
      • DRYiCE
      • Secure DevOps
    • Enterprise Security
      • AppScan
      • BigFix
    • Other Featured Products
      • HCL Now
      • SoFy
      • Cloud Native
      • Mainframe Solutions
    • Data, Analytics and Insights
      • Actian
      • Avalanche Cloud Data Platform
      • DataConnect
      • Ingres Transactional Database
      • Vector Analytics
      • OneDB
      • Zen Edge Data Management
  • Columns group 2
    • Resources
      • Success Story
      • Blog
      • Events
      • Video Gallery
    • About Us
      • Overview
      • Careers
      • HCL Ambassadors
      • Newsroom
      • Analyst Reports
      • Trust Center
    • HCLSoftware Customers
      • Ecommerce
      • Submit Idea
      • Support
      • Client Advocacy
      • Master Agreements
      • License Agreements
      • Open Source
      • Product Lifecycle
  • Partners
    • Partner Connect
  • Columns group3
    • Legal
      • Accessibility
      • Blog
      • Compliance
      • Privacy Statement
      • Cookie Statement
      • CCPA-Statement
      • Website Disclaimer
      • Future Products
      • PSIRT
      • Software Disclaimer
      • Terms of Use
      • SOC
      • Government - US Federal

Copyright © 2022 HCL Technologies Limited

  • Contact Us
  • Disclaimer
  • Privacy
  • Accessibility
  • Terms of use

We use cookies on our site. Please read more about them here.

Complementary Content Deferred Modules
  • ${title}${badge}
${loading}
Deferred Modules