Security & Data Protection

Last Updated: March 2026

Astaqc Consulting OPC Private Limited is committed to maintaining strong security practices and protecting the confidentiality of client data. We implement appropriate technical and organizational safeguards to ensure that information handled as part of our services remains protected.

Our Security Principles

Data Minimization

We limit the amount of data processed to only what is necessary for the delivery of services.

Least Privilege Access

Access to systems and project environments is restricted to authorized personnel based on role and project requirements.

Secure Development Practices

Software development, testing, and automation activities are performed using secure tools and controlled environments.

Confidentiality

Personnel involved in project delivery are subject to confidentiality obligations to protect client information.

Client Data Handling

Astaqc follows a data-minimization approach when working with client systems.

  • Client production data typically remains within client-controlled environments.
  • Access to systems is granted only when authorized by the client.
  • Synthetic or anonymized test data is preferred whenever possible.

Where test datasets are required, access is limited to authorized project personnel.

Security Measures

Astaqc implements security safeguards including:

  • Role-based access control
  • Secure authentication mechanisms
  • Controlled access to development tools
  • Endpoint and device protection
  • Secure communication protocols
  • Restricted access to project environments

Trusted Technology Providers

Astaqc uses trusted technology providers to support project delivery, including services within the Microsoft ecosystem, such as:

  • Microsoft Azure DevOps
  • Microsoft Visual Studio
  • Microsoft 365 (Outlook)

These platforms maintain industry-standard security and privacy safeguards.

Incident Response

Astaqc maintains internal procedures for identifying and responding to potential security incidents.

  • Incidents are investigated promptly
  • Containment measures are implemented where necessary
  • Affected clients are notified without undue delay

Data Protection & Privacy

Astaqc maintains policies and procedures aligned with data protection regulations including the General Data Protection Regulation (GDPR).

More information is available at:

Contact

For security or data protection inquiries, please contact:

privacy@astaqc.com

copilot