How does BJAK protect its systems?
Access controls
System access is provided according to job responsibilities. Sensitive systems and customer information are limited to authorised users, and access is reviewed when roles change or people leave the company.
Monitoring and logging
BJAK monitors important systems and records relevant activity. Logs help teams investigate errors, suspicious behaviour and operational incidents.
Secure development
Engineering teams follow development and review practices intended to reduce security weaknesses before changes are released. Higher-risk changes may require additional testing or approval.
Incident response
BJAK maintains procedures for identifying, containing, investigating and resolving security incidents. The response depends on the type of issue, the systems affected and the possible customer impact.
Third-party providers
BJAK also relies on insurers, payment providers and other service providers. These parties operate their own systems and security controls. BJAK considers third-party risks when integrating or continuing these services.
What customers can do
Use a strong password, protect one-time passwords and avoid signing in through links from unknown messages. Report suspicious messages or unusual account activity through BJAK's official support channel.
Important clarification
No organisation can promise that a system will never face an incident. The purpose of these controls is to reduce risk and support a timely response when issues occur.
