ISMS Policy

Tudo Technologies Pvt Ltd (“TTPL”) is committed to protecting the confidentiality, integrity, and availability of its own information assets and of the information assets entrusted to it by its customers. TTPL establishes, implements, maintains, and continually improves an Information Security Management System (ISMS) that covers all lines of its business — IT product development, IT consulting and software delivery services executed to customer requirements, and staff augmentation engagements — spanning the design, development, testing, deployment, operation, maintenance, and support of products and client solutions, as well as the conduct of personnel deployed within customer environments and systems.

To fulfil this commitment, the organization shall:

  • Protect information assets — including TTPL’s own, its customers’, and any accessed while delivering consulting or staff augmentation engagements — from unauthorized access, disclosure, alteration, destruction, and loss.

  • Comply with applicable legal, regulatory, contractual, and business requirements, including customer-specific security requirements and, where personnel are deployed within a customer’s environment, the customer’s own information security policies.

  • Identify, assess, and treat information security risks across product development, client project delivery, and staff augmentation engagements using a risk-based approach.

  • Implement appropriate administrative, technical, physical, and organizational security controls, applied consistently whether work is performed on TTPL-owned infrastructure or within a customer’s systems.

  • Integrate information security into product development, platform operations, client engagement delivery, staff augmentation onboarding and offboarding, vendor management, and business processes.

  • Ensure personnel — including those deployed on client sites or embedded within client teams — are competent, aware of their information security responsibilities, and supported with adequate resources.

  • Detect, report, respond to, and continually learn from information security incidents, whether they occur on TTPL’s own systems or within a customer’s environment.

  • Monitor, review, and continually improve the effectiveness of the ISMS through performance evaluation, internal audits, and management reviews.

  • Establish measurable information security objectives to monitor ISMS performance across all lines of business: IT products, IT consulting services, and staff augmentation.

Founder | Arjun GN

Date: 1st March 2026