Tuesday 18 August 2015

Information Security Certifications


There are lot of Information Security Certifications and BPO Companies in Andhra Pradesh.  For all these IT Companies and BPO Companies, security of the data that they handle and the security of the IT infrastructure that is used to process the data is very important.  This is all the more critical if sensitive data of the clients are being handled by such companies.

To showcase the security posture of the company, and to assure the clients about the data security standards that are being followed by such organisations, it is important for the companies to get themselves certified under any of the leading information security standards.

Some of the popular information security certifications are:

ISO 27001:2013 - ISO 27001 is the ISO standard for information security.  The 2013 version is the most latest version of this standard.  Organisations can get certified under this standard.  This standard specifies the requirements for estabilishing, implementing and maintaining an ISMS (Information Security Management System) within the organisation.

ISO 22301:2012 - ISO 22301 is the ISO standard for Business Continuity Management.  Implementing and getting certified under this standard will enable organisations to showcase that they have a robust business continuity plan and procedures.

SSAE 16 - SSAE 16 stands for Statement on Standards for Attestation Engagements No. 16.  If a company in India is performing outsourced services for a company in US, and where such services affects the financial statements of the US Company, then such US Companies will typically require the Indian company to undergo a SSAE16 review. The purpose of a SSAE 16 review is to evaluate an organisation's information systems in relation to security, availability, confidentiality, integrity and / or privacy.

COBIT 5 - COBIT stands for Control Objectives for Information and Related Technology. This is a framework created by ISACA which conducts CISA and CISM examinations.  COBIT is a business framework for the governance and management of enterprise IT.

qadit systems helps organisations to comply with these various standards and achieve relevant certifications.  As an IT Security Consulting organisation, we partner with our clients to build a strong and robust Information Security framework within their organisations to enable a smooth certification process.

Monday 10 August 2015

ISO certifications


ISO 27001 specifies a management system that is very well intended to bring in information
security. This information security is brought under a management control that is explicit. As
it is a formal specification, it means that the mandate is of a specific requirement. Any
organisation that has adopted such a certification can be audited in a formal manner and
also certify complaints in a standardised and orderly manner.

ISMS or information security management system can be defined as a set of policies that is
concerned with an information security management or other information technology
related risks. The main principle behind this is that any particular organisation should be
designing, implementing and also maintaining a very coherent set of policies, systems and
also processes. This is done in order to manage the risks that can affect the information
assets. This ensures very acceptable levels of security risk related to information.

ISO 22301 business continuity is known to specify the requirements that are important to
plan, implement, establish, monitor and also operate the management system that is
documented. This is done in order to protect and reduce the likelihood of any disruptive and
negative incidents. In case a negative incident has already occurred, it will help in getting rid
of the incident. The requirements of this ISO are generic and they can be readily applicable
to all organisations no matter what their area of work is. However, the extent of their
applicability can depend on the operating complexity and also the environment of the
company or organisation.

Hence it can be concluded that information security management systems is responsible for
all these certifications, policies and rules. . Without this system, it is difficult to have a
control over the organisational structure and working. It is necessary to satisfy the
requirements of these certifications and policies. Without such systems the organisation will
be in disarray. There will not be anything in an organised manner and things will get
disjointed. Such policies must be assigned to each and every situation in order to deal with it
thoroughly.

Many organisations are taking this matter seriously. In order to maintain the continuity of
the organisation it is important to follow these policies, rules and certifications. They are
universal and are applicable to all organisations no matter what their work or profits are.
Any organisation whether big or small, must use these certifications without fail.

Sunday 9 August 2015

Who we Are



Qadit Systems is promoted & managed by a team of highly qualified professionals who have varied experience in IT Security Consulting, Risk Management, ERP and Business Process Analysis. The promoters have rich experience in providing Information Security Consultancy, Risk Assessments and Management, Management Consultancy and Audit Services to leading corporates, BPOs, Government of Tamil Nadu and banks in India.
Qadit has a resource base of qualified IT and Audit Professionals, CISAs, DISAs, BS7799 Lead Auditors, and Chartered Accountants in addition to a dedicated team of IT technical specialists. The team has in-depth knowledge on ERP, banking applications and use of varied IT Security Audit tools.  Qadit’s expertise covers verticals such as BFSI, Manufacturing, Telecom, FMCG, Pharmaceuticals, Entertainment and IT.

Qadit is empanelled by the Controller of Certifying Authorities (CCA) as an auditor under the Information Technology Act, 2000 for conducting the technical and physical infrastructure audits of the Certifying Authorities. This empanelment is valid upto May, 2015. Qadit has got itself certified as ISO 27001:2005 company. This certification provides our clients an assurance that their confidential data are safely dealt with by us.
Qadit has since 2001 (the year of incorporation) been providing world-class end-to-end information security solutions to clients. Our proven methodologies, in-house knowledge base and customized approach of partnering with clients to understand and mitigate their information security risks have enabled us to be one of the market leaders in IT Security Consulting. 


Vision

We are committed to being an organization with an obsession for delivering Quality Solutions - powered by the internal depth of talent, in-house best practices, innovative alliances and impeccable values.


Mission

Our Mission is to ensure that all information assets of the organization meets the C I A credo of Confidentiality,Integrity and Availability.

In our mission, we are committed to being an organization with an obsession for delivering Quality Solutions - powered by the internal depth of talent, in-house best practices, innovative alliances and impeccable values.



N. Venkatakrishnan, FCA, AICWA, ACS
Over 33 years of audit experience. Rank holder in both the CA and ICWA Final Examinations. Auditor / Consultant to many of the major industrial and commercial houses in India including Asian Paints, Bajaj Electricals, Cavinkare, Compaq, Euronet and EID Parry. He was also a Director of Bharat Overseas Bank prior to its merger with Indian Overseas Bank.

B. Mahesh BalanCISA, DISA, ACA, Certified Ethical Hacker, Grad. CWA, BS7799 Lead Auditor
Over 20 years of professional experience in the areas of Audit, Finance and Information technology. Rank holder in both intermediate and final CA examinations. Over 8 years of IT Security Consulting, 4 years of audit and finance experience and 5 years of systems and control design experience.

V. Vijayakumar, CISA, DISA, ACA, Certified Ethical Hacker, AICWA, LCS, BS7799 Lead Auditor
Over 18 years of professional experience in the areas of Audit, Finance and Information  technology.  Rank holder in both intermediate and final CA examinations. Over 8 years of IT Security Consulting experience and 6 years of systems and control design experience.

N. Swameshwar, DISA, FCA, Grad CWA
Over 18 years of professional experience in the areas of Audit, Finance, ERP Implementation and IT Security Consulting. First Rank holder in the DISA (Diploma in Information Systems Audit) examination conducted by the Institute of Chartered Accountants of India. Over 5 years of experience in finance, 3 years of ERP implementation experience and 6 years of IT Security Consulting experience.

K. Sivashenbagam, CPA, ACA, ACMA, CISA, CIA
Over 20 years of professional experience in the areas of Audit, Finance, Business Transformation and IT Security Consulting. Has worked with Transnational companies in Singapore, UK, USA & Middle East. Industry exposure includes CPG, Hi Tech, Banking, Manufacturing and Energy.

Jaya Prasad, MBA
Rank holder in MBA from Anna university and a certified SAP HR consultant. Done project work in distribution network in Cipla. Got a year's experience in HR as a HR executive in Ceylinco Ltd in Srilanka and done certification course in HR in IPM Colombo.