Security objective
AionSi seeks to protect customer information, company information, intellectual property and personal data against unauthorized access, use, disclosure, alteration or loss through appropriate controls and responsible behavior.
Access control
Access should be granted based on legitimate business need and appropriate authorization. Personnel should use only the access necessary to perform their responsibilities.
Confidentiality
Confidential information must be handled according to contractual and company requirements and shared only with authorized recipients.
Data protection
Personal data should be collected, used, stored and shared in accordance with applicable privacy laws and legitimate business purposes.
Security awareness
Personnel should maintain awareness of phishing, credential protection, secure handling of information, device security and other relevant security practices.
Incident response
Suspected security or privacy incidents should be reported promptly through established internal channels so that appropriate containment, investigation, notification and corrective action can be considered.
Customer requirements
Where contractual customer security or privacy requirements apply, AionSi will work with the relevant delivery, engineering, IT and leadership owners to address those requirements.
This document describes AionSi’s current responsible-business framework. It is not a representation of third-party certification or assurance unless separately stated. Requirements may be supplemented by applicable law, customer contracts and approved internal policies.
← Back to Sustainability & ESG