Security Policy
At Crown National we are committed to ensuring the security of our customers' personal information and our website. This Security Policy outlines the measures we take to protect your data and maintain the integrity of our eCommerce platform.
1. Data Protection Measures
Encryption:
We use Secure Socket Layer (SSL) technology to encrypt sensitive information during transmission. This ensures that your data is protected when you enter or transmit information through our site.
Access Control:
Personal information is accessible only to authorized personnel who require access to perform their job functions.
We enforce strict access control measures, including password protection and role-based access, to safeguard your data.
Payment Security:
All payment transactions are processed through secure third-party payment gateways that comply with industry standards such as PCI-DSS (Payment Card Industry Data Security Standard).
We do not store payment card details on our servers.
2. Network Security
Firewalls and Intrusion Detection:
We employ firewalls and intrusion detection systems to monitor and protect our network from unauthorized access and potential threats.
Regular Security Assessments:
We conduct regular security assessments, including vulnerability scans and penetration testing, to identify and address potential security weaknesses in our systems.
Security Updates:
Our systems and software are regularly updated to address security vulnerabilities and ensure compliance with industry best practices.
3. User Account Security
Strong Password Policies:
We require users to create strong passwords that meet complexity requirements to enhance the security of their accounts.
Users are encouraged to change their passwords regularly and not to share their login credentials with others.
Two-Factor Authentication (2FA):
We offer two-factor authentication as an additional layer of security for user accounts. This helps prevent unauthorized access even if login credentials are compromised.
4. Data Backup and Recovery
Regular Backups:
We perform regular backups of our data to ensure that your information is not lost in the event of a system failure or other unforeseen incidents.
Disaster Recovery Plan:
Our disaster recovery plan includes procedures for data recovery and business continuity to minimize disruption and ensure the availability of our services.
5. Employee Training and Awareness
Security Training:
Our employees receive regular training on data security best practices and the importance of protecting customer information.
Security Policies and Procedures:
We have established comprehensive security policies and procedures that all employees must follow to ensure the protection of customer data and our systems.
6. Reporting Security Incidents
Incident Response:
We have a defined incident response plan to address security breaches or incidents promptly. This includes steps for containment, investigation, notification, and remediation.
Reporting Mechanism:
If you suspect any security issues or have concerns about the security of your personal information, please contact us immediately at jhb@crownnational.co.za/+27 (0)11 201 9000.
7. Changes to This Policy
We may update this Security Policy from time to time to reflect changes in our practices or applicable laws. We will notify you of any changes by posting the new policy on our website and updating the effective date. Your continued use of our site after any changes indicates your acceptance of the updated policy.
8. Contact Us
If you have any questions about this Security Policy, please contact us:
By email: jhb@crownnational.co.za
By phone: +27 (0)11 201 9000