Title: Information Technology Use and Access Policy
Author: Kriko
Published: Jul 5, 2026
Last modified: Aug 13, 2026

---

 1.  [Home](https://kriko.io/) /
 2.  [Company Policies](https://kriko.io/company-policies) /
 3.  [Information Technology and Data Management Policies](https://kriko.io/company-policies/information-technology-and-data-management-policies)/
 4.  Information Technology Use and Access Policy

# Company Policies

The principles that guide every team at Kriko. From how we hire and protect data
to how we uphold quality and sustainability.

## Information Technology Use and Access Policy

## General Principles

### a. Authorisation and Access Controls

The Company implements appropriate controls to manage and authorise access to its
information technology systems.

Each employee’s access rights are determined according to their role, responsibilities
and business requirements.

### b. User Authentication

The Company maintains a secure user authentication process.

Employees must access their accounts and verify their identities using strong passwords
and other authentication methods required by the Company.

### c. Data Backup and Recovery

The Company performs regular data backups and maintains appropriate recovery plans.

Necessary measures are implemented to restore data promptly in the event of data
loss.

## Internet Use

### a. Acceptable Use

The Company promotes the use of internet access primarily for legitimate business
purposes.

Employees are expected to use the internet in accordance with the Company’s acceptable
use requirements.

### b. Security and Threat Protection

The Company provides employees with training and guidance on internet security risks.

Up-to-date antivirus and security software is used to protect systems and devices
against malware and other cyber threats.

## Email Use

### a. Acceptable Use

The Company ensures that business email accounts are used securely, responsibly 
and effectively.

Limited personal use of Company email may be permitted, provided that it remains
appropriate and does not interfere with business activities or breach Company policies.

### b. Data Security

The Company implements appropriate controls to ensure that sensitive information
is shared securely by email.

Encryption and other security measures are applied where necessary to prevent data
leakage and unauthorised disclosure.

## Use of Devices and Hardware

### a. User Responsibilities

Employees must use Company-provided devices and hardware appropriately, securely
and solely for authorised purposes.

Each user is responsible for protecting the security, integrity and physical condition
of the devices assigned to them.

### b. Updates and Software Management

The Company ensures that devices are protected with up-to-date software and security
patches.

Appropriate measures are implemented to ensure that only properly licensed and authorised
software is used and to prevent unauthorised software downloads.

Employees must not download or install software without prior approval from Company
management or without a valid licence. Any unauthorised or unlicensed software installation
may result in disciplinary action and other applicable consequences.

## Mobile Device Use

### a. Acceptable Use

The Company promotes the appropriate use of mobile devices for legitimate business
purposes.

Mobile device use is monitored and managed in accordance with the Company’s acceptable
use and security requirements.

### b. Data Security

The Company implements appropriate measures to protect data accessed, processed 
or stored on mobile devices.

These measures may include data encryption, remote wiping capabilities, access controls
and other relevant security safeguards.

##  Communication Policies

 *  [Internal Communication and Collaboration Policy](https://kriko.io/company-policies/communication-policies/internal-communication-and-collaboration-policy)
 *  [Internal Communication Channels and Meeting Policy](https://kriko.io/company-policies/communication-policies/internal-communication-channels-and-meeting-policy)
 *  [Social Media Policy](https://kriko.io/company-policies/communication-policies/social-media-policy)

##  Crisis and Incident Management Policies

 *  [Crisis Communication and Reputation Management Policy](https://kriko.io/company-policies/crisis-and-incident-management-policies/crisis-communication-and-reputation-management-policy)
 *  [Emergency Planning and Response Policy](https://kriko.io/company-policies/crisis-and-incident-management-policies/emergency-planning-and-response-policy)

##  Disciplinary Policies

 *  [Disciplinary Policy](https://kriko.io/company-policies/disciplinary-policies/disciplinary-policy)

##  Human Resources Policies

 *  [Diversity, Equity and Inclusion Policy](https://kriko.io/company-policies/human-resources-policies/recruitment-policy)
 *  [Employee Training and Development Policy](https://kriko.io/company-policies/human-resources-policies/termination-policy)
 *  [Anti-Discrimination and Diversity Policy](https://kriko.io/company-policies/human-resources-policies/anti-discrimination-and-diversity-policy)
 *  [Occupational Health and Safety Policy](https://kriko.io/company-policies/human-resources-policies/remote-hybrid-work)
 *  [Recruitment and Termination Policy](https://kriko.io/company-policies/human-resources-policies/recruitment-and-termination-policy)
 *  [Working Hours, Leave and Absence Policy](https://kriko.io/company-policies/human-resources-policies/working-hours-leave-and-absence-policy)

##  Business Ethics and Compliance Policies

 *  [Password Creation and Use Policy](https://kriko.io/company-policies/business-ethics-and-compliance-policies/data-protection-policy)
 *  [Transparency and Reporting Policy](https://kriko.io/company-policies/business-ethics-and-compliance-policies/acceptable-use-policy)
 *  [Conflict of Interest and Anti-Bribery Policy](https://kriko.io/company-policies/business-ethics-and-compliance-policies/conflict-of-interest-and-anti-bribery-policy)
 *  [Data Privacy and Security Policy](https://kriko.io/company-policies/business-ethics-and-compliance-policies/data-privacy-and-security-policy)
 *  [Ethical Conduct and Integrity Policy](https://kriko.io/company-policies/business-ethics-and-compliance-policies/ethical-conduct-and-integrity-policy)
 *  [Legal and Regulatory Compliance Policy](https://kriko.io/company-policies/business-ethics-and-compliance-policies/incident-response)

##  Customer Relations Policies

 *  [Customer Data Privacy and Security Policy](https://kriko.io/company-policies/quality-compliance/quality-management)
 *  [Complaint Management and Feedback Policy](https://kriko.io/company-policies/quality-compliance/anti-bribery-corruption)
 *  [Customer Satisfaction Policy](https://kriko.io/company-policies/quality-compliance/code-of-conduct)

##  Information Technology and Data Management Policies

 *  [Ransomware, Phishing Attacks, Email and Internet Use Policy](https://kriko.io/company-policies/information-technology-and-data-management-policies/environmental-policy)
 *  [Vulnerability Disclosure Policy](https://kriko.io/company-policies/information-technology-and-data-management-policies/vulnerability-disclosure-policy)
 *  [Software Licensing and Usage Policy](https://kriko.io/company-policies/information-technology-and-data-management-policies/social-responsibility)
 *  [Data Backup and Recovery Policy](https://kriko.io/company-policies/information-technology-and-data-management-policies/supplier-code-of-conduct)
 *  [Data Security and Protection Policy](https://kriko.io/company-policies/information-technology-and-data-management-policies/data-security-and-protection-policy)
 *  [Information Technology Use and Access Policy](https://kriko.io/company-policies/information-technology-and-data-management-policies/information-technology-use-and-access-policy)

## Track the digital heartbeat  with Kriko

Subscribe to receive curated insights, news, and ideas shaping the digital landscape.

  By checking this box, you acknowledge and accept our [privacy policy](https://kriko.io/privacy-policy).