Legal Documents
Security Policy.
Effective Date: 05/08/2026 ยท Last Updated: 05/08/2026
1. Purpose
This Security Policy describes the administrative, technical and organizational measures implemented by ARZAQ INSIGHTS to protect the Arzavo platform and customer information.
2. Infrastructure
Arzavo is hosted on Amazon Web Services (AWS) infrastructure in the Mumbai (India) region. Infrastructure components are monitored and maintained to support availability, reliability and security.
3. Tenant Isolation
Each educational institution operates within its own isolated tenant database. Tenant data is logically separated to reduce the risk of unauthorized cross-tenant access.
4. Access Control
Access to administrative systems is restricted to authorized personnel with a legitimate business need. Authentication controls and permission management are used to limit access.
5. Authentication
Users are responsible for protecting their credentials. Institutions should assign appropriate roles and promptly remove access for users who no longer require it.
6. Encryption
Industry-standard encryption is used where appropriate to protect data in transit. Sensitive information is protected using suitable security controls.
7. Monitoring & Logging
Security events, authentication activity and operational logs may be recorded to detect suspicious activity, investigate incidents and improve platform security.
8. Backup & Disaster Recovery
Regular backups are maintained to support disaster recovery and business continuity. Backup retention and restoration follow internal operational procedures.
9. Vulnerability Management
ARZAQ INSIGHTS may periodically review infrastructure, software dependencies and platform components to identify and remediate security vulnerabilities.
10. Incident Response
Suspected security incidents are investigated promptly. Where appropriate, affected customers may be notified in accordance with applicable law and operational requirements.
11. Customer Responsibilities
- Use strong passwords.
- Protect account credentials.
- Assign user permissions responsibly.
- Keep contact information up to date.
- Report suspected security issues immediately.
12. Responsible Disclosure
Security researchers who identify a potential vulnerability are encouraged to report it responsibly to support@arzavo.com. Please do not exploit or publicly disclose vulnerabilities before allowing reasonable time for investigation.
13. Policy Updates
This policy may be revised from time to time to reflect improvements in security practices or changes in legal requirements.
14. Contact
For any security concerns or reporting, contact us:
ARZAQ INSIGHTS
Address: 208/10 Musapur, Sandila, Hardoi, Uttar Pradesh 241204
Email: support@arzavo.com
Phone: +91 8090492602