+972 72 393 3942 contact@bysarjnoux.com

Security Policy

Last updated: October 13, 2025

Bysar Jnoux is committed to protecting the security of its platform, services, and the data entrusted to us by our users. This Security Policy describes the measures we take to safeguard information and the responsibilities shared between us and our users.


1. Scope

This policy applies to all systems, infrastructure, applications, and services operated by Bysar Jnoux, including the website at bysarjnoux.com and any associated platforms. It covers all data processed, stored, or transmitted through our services.


2. Data Protection Principles

We apply the following principles to all data handling activities:

Confidentiality: Access to data is restricted to authorized personnel who require it to perform their duties.

Integrity: We implement controls to prevent unauthorized modification of data in transit or at rest.

Availability: We maintain redundant systems and monitoring to ensure service continuity and minimize downtime.


3. Technical Security Measures

3.1 Encryption

All data transmitted between users and our services is encrypted using industry-standard Transport Layer Security (TLS). Sensitive data stored on our systems is encrypted at rest using recognized encryption standards.

3.2 Access Controls

Access to internal systems is governed by the principle of least privilege. Administrative access requires multi-factor authentication. Access rights are reviewed periodically and revoked promptly upon role change or termination.

3.3 Network Security

Our infrastructure is protected by firewalls, intrusion detection systems, and network segmentation. Traffic is monitored continuously for anomalous behavior and potential threats.

3.4 Vulnerability Management

We conduct regular vulnerability assessments and apply security patches in a timely manner. Critical vulnerabilities are prioritized and addressed as a matter of urgency.

3.5 Logging and Monitoring

System events, access logs, and security-relevant activities are logged and retained for a defined period. Logs are monitored to detect and respond to suspicious activity.


4. Organizational Security Measures

4.1 Personnel

Team members with access to sensitive systems or data are subject to background verification where applicable. All personnel receive security awareness training relevant to their role.

4.2 Third-Party Vendors

We evaluate the security posture of third-party service providers before engagement. Vendors who process data on our behalf are required to maintain appropriate security standards consistent with this policy.

4.3 Secure Development

Security considerations are integrated into our software development lifecycle. Code changes undergo review processes that include security evaluation prior to deployment.


5. Incident Response

We maintain an incident response plan to address security events in a structured and timely manner. In the event of a confirmed security incident affecting user data, we will:

Contain the incident to prevent further exposure.

Investigate the nature, scope, and cause of the event.

Notify affected users and relevant parties as required and as promptly as practicable.

Remediate the root cause and implement measures to prevent recurrence.

Security incidents can be reported to us at contact@bysarjnoux.com.


6. User Responsibilities

Security is a shared responsibility. Users of our platform are expected to:

Use strong, unique passwords and keep credentials confidential.

Enable multi-factor authentication where available.

Promptly report any suspected unauthorized access or suspicious activity to our team.

Refrain from sharing account credentials with unauthorized parties.

Keep their own devices and software up to date with current security patches.


7. Physical Security

Our services are hosted on infrastructure maintained by reputable cloud and data center providers. Physical access to servers and networking equipment is controlled, monitored, and restricted to authorized personnel only.


8. Business Continuity and Disaster Recovery

We maintain backup procedures and disaster recovery plans to ensure that services can be restored within acceptable timeframes following an unexpected disruption. Backups are tested periodically to verify their integrity and usability.


9. Responsible Disclosure

We welcome reports from security researchers and the general public regarding potential vulnerabilities in our systems. If you believe you have identified a security issue, please contact us at contact@bysarjnoux.com before disclosing it publicly. We will acknowledge receipt of your report and work to address confirmed issues in a reasonable timeframe.

We ask that you act in good faith, avoid accessing or modifying data that does not belong to you, and refrain from actions that could harm users or service availability during your research.


10. Changes to This Policy

We may update this Security Policy from time to time to reflect changes in our practices, technologies, or applicable requirements. The date at the top of this page indicates when the policy was last revised. Continued use of our services following any update constitutes acceptance of the revised policy.


11. Contact

For questions, concerns, or reports related to this Security Policy, please contact us:

Bysar Jnoux
Email: contact@bysarjnoux.com
Phone: +972 72 393 3942
Telegram: https://t.me/+972723933942