
GAITS has been Certified at the corporate level with ISO/IEC 27001:2005 which is the newest management system standard to help ensure cyber security. This leading-edge tool helps enable organizations to organize information security processes and document subsequent actions in a format that allows companies to implement security controls that can be customized to their specific business needs.
The ISO/IEC 27 001:2005 Standard forms a complementary pair with the ISO/IEC 17 799:2005 - Code of practice for information security management, and replaces the British Standard BS 7799-2 used previously by organizations to register their ISMS. The standard is intended to provide the foundation for third party audit, and is "harmonized" with other ISO standards such as the ISO 9001 and ISO 14001.
The basic objective of the standard is to help establish and maintain an effective ISMS, using a continual improvement approach. The ISO 27001 standard integrates the OECD (Organization for Economic Cooperation and Development) 9 principles governing security of information and network systems adopted by the OECD Council at its 1037th session held on July 25th, 2002.
Registering to the standard demonstrates to business partners and customers that your organization is committed to privacy and security.
ISO 27001 can help with:
- Minimizing the risk of privacy and security breaches
- Demonstrating due diligence for compliance with privacy laws
- Defining the security process
- Creating security objectives and requirements
- Cost-effectively managing security risks
- Ensuring the organization's security objectives are met by providing a roadmap for managing requirements
- Complying with government, industry and other regulations
- Providing a uniform platform to show customers and partners how information is secured
- Determining the extent of compliance with corporate directives and government policies
The key to GAITS' phenomenal success is the company's resolute commitment to satisfying customer requirements and expectations. Quality management is an intrinsic part of our culture and corporate value system. Our approach is based on the principle of continuous quality and process improvement. These international standards assure our customers that our solutions are always of the highest quality.
ISO 9001:2008 AND ISO 20000-1:2005 (ITIL)
Registration by the International Organization for Standardization (ISO) is recognized worldwide as an important quality hallmark. The certification is a significant component of our overall Quality Management System and is evidence of our commitment to continuous improvement in all aspects of our business and work.
SEI - CMMI
The Software Engineering Institute (SEI) Capability Maturity Model® Integration (CMMI) is an international project (lifecycle) quality standard. GAITS has been assessed and is certified.
Quality Assurance and its implementing procedures, techniques and resources, address all quality objectives, quality attributes and management commitment to achieving these objectives, organizational goals, and customer expectations and needs. Continuous improvement to the Quality Management System is made to enhance the achievement of QA objectives. GAITS’ QA team conducts periodic reviews of the customer’s quality system to determine the system’s effectiveness and suitability. Results of these reviews are maintained as quality records and can be presented as recommendations.. Quality planning includes, as appropriate:
- Ensuring the compatibility of the design, production process, installation, servicing, inspection, test procedures, training, installation, transition, implementation and applicable documentation,
- Updating, as necessary, quality control, inspection, and testing techniques, including the development of new instrumentation,
- Identification, in sufficient time for the needed capability to be developed, of any measurement requirement involving capability that exceeds the known state of the art,
- Identification of suitable verification at appropriate stages in the product’s lifecycle,
- Identification and acquisition of controls, processes, equipment, fixtures, resources, and skills needed to achieve the required quality,
- Clarification of standards of acceptability for all features, processes, products and requirements, including those which contain a subjective element, and
- Identification and preparation of quality records.