Security policy
Information Security at Rocketbot is a fundamental part of our business, allowing us to give our clients and users confidence in the information technologies we operate. Data, based on our information classification, is managed to the highest standards according to the best practices available in the market, which is a foundation for our growth and organizational sustainability.
Information Security at Rocketbot is possible thanks to the commitment of senior management, which promotes a culture of continuous improvement and provides the necessary resources and tools.
Senior management understands and addresses the importance and benefits of remaining in compliance, not only with ISO 27001 requirements and security best practices, but also with other legal, contractual and government requirements relevant to the organization's context.
As part of this commitment, senior management establishes and supports the following information security objectives, aligned with the ISMS and the organizational strategy:
- Implement continuous monitoring controls that allow 100% of critical threats detected in information systems to be identified and reported.
- Strengthen the secure configuration of critical technology systems by implementing hardening controls based on recognized standards.
- Foster an organizational culture oriented toward information protection, integrating security into staff's daily practices through awareness programs, continuous training and reinforcement of individual responsibilities regarding the secure use of technology.
- Ensure compliance with applicable personal data protection regulations (Chile and regional markets), ensuring that 100% of processes involving sensitive data have implemented controls, up-to-date documentation and privacy incident response mechanisms.
- Establish guidelines and controls for the secure use of artificial intelligence tools, ensuring their adoption within the organization is carried out in a controlled manner, minimizing risks of information leakage, misuse or exposure of sensitive data.
Compliance with these objectives will be periodically reviewed by the Security Committee, ensuring their monitoring, measurement and continuous improvement in accordance with ISMS guidelines.
At Rocketbot, our Information Security policies and procedures are made known to employees in general, when applicable. As far as possible, and based on the defined ISMS Communication Plan, our key stakeholders will be informed of our guidelines and best practices.
RPA Studio