Online Service Providers of Permit for Purchase and Consumption of
Liquor in Maharashtra

मद्य पिण्यासाठी/खरेदी करण्यासाठी ऑनलाइन परवाना

Instant Apply

This website is owned & Organization and is not Associated with Maharashtra State Excise Department or Govt Maharashtra in any way of.   We charge fees for our service. 100% Reliable Secure.   Lifetime Valid Certificate.

Data Securety Policy

1. INTRODUCTION

THE ELIQUORPERMIT DATA SECURITY POLICY COVERS OUR SERVICES AND WEBSITES LOCATED AT WWW.ELIQUORPERMIT.COM (HEREINAFTER COLLECTIVELY REFERRED TO AS “SERVICE(S)”).
WE VALUE THE UNWAVERING TRUST THAT OUR USERS PLACE IN US AS CUSTODIANS OF THEIR DATA. WE UNDERSTAND OUR RESPONSIBILITY AND TAKE APPROPRIATE CARE TO PROTECT AND SECURE YOUR INFORMATION SERIOUSLY AS DESCRIBED IN OUR SECURITY PRACTICES BELOW.
THE TERMS “CUSTOMER” “YOU” “YOUR” “USER” AND “USERS” REFER TO ALL INDIVIDUALS AND OTHER PERSONS WHO ACCESS OR USE OUR SERVICES, INCLUDING, WITHOUT LIMITATION, ANY COMPANIES, ORGANIZATIONS, OR OTHER LEGAL ENTITIES THAT REGISTER ACCOUNTS OR OTHERWISE ACCESS OR USE THE SERVICES THROUGH THEIR RESPECTIVE EMPLOYEES, AGENTS, OR REPRESENTATIVES.
THIS POLICY IS APPLICABLE TO ALL ELIQUORPERMIT DATA AND CUSTOMER DATA ASSETS THAT EXIST IF ANY; ELIQUORPERMIT PROCESSING ENVIRONMENT, ON ANY MEDIA DURING ANY PART OF ITS LIFE CYCLE. THE FOLLOWING ENTITIES OR USERS ARE COVERED BY THIS POLICY:

  • FULL OR PART-TIME EMPLOYEES OF ELIQUORPERMIT WHO HAVE ACCESS TO ELIQUORPERMIT OR CUSTOMER DATA.
  • ELIQUORPERMIT VENDORS OR PROCESSORS WHO HAVE ACCESS TO ELIQUORPERMIT OR CUSTOMER DATA.
  • OTHER RELEVANT PERSONS, ENTITIES, OR ORGANIZATIONS THAT HAVE ACCESS TO ELIQUORPERMIT OR CUSTOMER DATA.

2. COMPLIANCE

ELIQUORPERMIT IS COMPLIANT WITH THE PAYMENT DATA SECURITY STANDARDS VIA THE THIRD-PARTY PAYMENT PROVIDERS WE USE AND CAN THEREFORE ACCEPT OR PROCESS CREDIT CARD INFORMATION SECURELY IN ACCORDANCE WITH THESE STANDARDS. IN ADDITION, ELIQUORPERMIT FOLLOWS THE REASONABLE SECURITY PRACTICES AND PROCEDURES AS PER RULE 8 OF INFORMATION TECHNOLOGY (REASONABLE SECURITY PRACTICES AND PROCEDURES AND SENSITIVE PERSONAL DATA OR INFORMATION) RULES, 2011.

3. ACCESS CONTROL

ACCESS TO OUR TECHNOLOGY RESOURCES IS ONLY PERMITTED THROUGH SECURE CONNECTIVITY (FOR E. G. HTTPS) AND REQUIRES AUTHENTICATION. OUR PASSWORD POLICY REQUIRES COMPLEXITY, EXPIRATION, LOCK OUT AND DISALLOWS REUSE. WE GRANT ACCESS ON A NEED TO KNOW ON THE BASIS OF LEAST PRIVILEGE RULES, REVIEWS PERMISSIONS QUARTERLY, AND REVOKES ACCESS IMMEDIATELY AFTER EMPLOYEE TERMINATION.

4. SECURITY POLICIES

WE REVIEW AND UPDATE OUR SECURITY POLICIES AT LEAST ANNUALLY. OUR EMPLOYEES ARE OBLIGATED TO ACKNOWLEDGE POLICIES ON AN ANNUAL BASIS AND ARE PROVIDED TRAINING FOR ASSURING DATA SECURITY AND JOB SPECIFIC SECURITY AND SKILL DEVELOPMENT FOR KEY JOB FUNCTIONS.

5. PHYSICAL SECURITY

OUR INFORMATION SYSTEMS AND TECHNICAL INFRASTRUCTURE ARE HOSTED WITHIN WORLD-CLASS DATA CENTER LOCATED IN INDIA. PHYSICAL SECURITY CONTROLS AT OUR DATA CENTRES INCLUDE CAMERA SURVEILLANCE, VISITOR LOGS, SECURITY PERSONNEL.

6. PERSONNEL SCREENING

WE CONDUCT BACKGROUND RESEARCH AT THE TIME OF HIRE (TO THE EXTENT PERMITTED OR FACILITATED BY APPLICABLE LAWS AND COUNTRIES). IN ADDITION, WE COMMUNICATE OUR DATA SECURITY POLICIES TO ALL PERSONNEL (WHO MUST ACKNOWLEDGE THIS) AND REQUIRE NEW EMPLOYEES TO SIGN NON-DISCLOSURE AGREEMENTS AND PROVIDE ONGOING PRIVACY AND SECURITY TRAINING.

7. PENETRATION TESTING AND SYSTEM VULNERABILITY ASSESSMENTS

WE HAVE A VULNERABILITY ASSESSMENT PROGRAM WHICH INCLUDES PERIODIC SCANS, IDENTIFICATION, AND REMEDIATION OF SECURITY VULNERABILITIES ON SERVERS, NETWORK EQUIPMENT, AND APPLICATIONS. ALL NETWORKS, INCLUDING TEST AND PRODUCTION ENVIRONMENTS, ARE REGULARLY SCANNED USING TRUSTED THIRD-PARTY VENDORS.
WE ALSO CONDUCT REGULAR INTERNAL AND EXTERNAL PENETRATION TESTS AND REMEDIATE ACCORDING TO SEVERITY FOR ANY RESULTS FOUND.

8. DATA TRANSIT ENCRYPTION

ALL USERS THAT ACCESS ELIQUORPERMIT OR CUSTOMER DATA TO ENABLE ITS TRANSMISSION MUST DO SO ONLY IN CONFORMANCE TO THIS POLICY.
WHERE THE NECESSARY DATA TRANSMITTED, MUST BE SECURED VIA CRYPTOGRAPHIC MECHANISMS. THIS MAY INCLUDE THE USE OF CONFIDENTIALITY AND/OR INTEGRITY MECHANISMS. SPECIFIC CRYPTOGRAPHIC MECHANISMS ARE USED FOR THE PURPOSES OF CRYPTOGRAPHY.
THE MEDIA USED TO DISTRIBUTE DATA SHOULD BE CLASSIFIED SO THAT IT CAN BE IDENTIFIED AS CONFIDENTIAL AND IF THE MEDIA IS SENT USING COURIER OR ANOTHER DELIVERY METHOD, IT SHOULD BE ACCURATELY TRACKED. NO DATA CAN BE DISTRIBUTED IN ANY MEDIA FROM A SECURED AREA WITHOUT PROPER MANAGEMENT APPROVAL.

9. DATA CLASSIFICATION

DATA CLASSIFICATION IS NECESSARY TO ENABLE THE ALLOCATION OF RESOURCES TO THE PROTECTION OF DATA ASSETS, AS WELL AS DETERMINING THE POTENTIAL LOSS OR DAMAGE FROM THE CORRUPTION, LOSS OR DISCLOSURE OF DATA.
TO ENSURE THE SECURITY AND INTEGRITY OF ALL DATA, THE DEFAULT DATA CLASSIFICATION OF ANY DATA ASSET IS EITHER CONFIDENTIAL CUSTOMER DATA OR PROPRIETARY COMPANY DATA.
THE DATA SECURITY OFFICER SHALL BE RESPONSIBLE FOR EVALUATING THE DATA CLASSIFICATION SCHEMES AND RECONCILING IT WITH NEW DATA TYPES AS THEY ENTER USAGE. IT MAY BE NECESSARY, AS WE ENTER NEW BUSINESS ENDEAVORS, TO DEVELOP ADDITIONAL DATA CLASSIFICATIONS.
ALL DATA FOUND IN THE PROCESSING ENVIRONMENT MUST SHALL INTO ONE OF THE FOLLOWING CATEGORIES:

  • COMPANY DATA (PUBLIC)- PUBLIC COMPANY DATA IS DEFINED AS DATA THAT ANY ENTITY EITHER INTERNAL OR EXTERNAL TO ELIQUORPERMIT CAN ACCESS. THE DISCLOSURE, USE OR DESTRUCTION OF COMPANY DATA WILL HAVE LIMITED OR NO ADVERSE AFFECTS ON ELIQUORPERMIT OR CARRY ANY SIGNIFICANT LIABILITY. (EXAMPLES OF PUBLIC COMPANY DATA INCLUDE READILY AVAILABLE NEWS, STOCK QUOTES, OR SPORTING INFORMATION.)
  • PROPRIETARY COMPANY DATA - PROPRIETARY COMPANY DATA IS ANY INFORMATION THAT DERIVES ITS ECONOMIC VALUE FROM NOT BEING PUBLICLY DISCLOSED. IT INCLUDES INFORMATION THAT ELIQUORPERMIT IS UNDER LEGAL OR CONTRACTUAL OBLIGATION TO PROTECT. THE VALUE OF PROPRIETARY COMPANY INFORMATION TO ELIQUORPERMIT WOULD BE DESTROYED OR DIMINISHED IF SUCH INFORMATION WERE DISCLOSED TO OTHERS. MOST ELIQUORPERMIT SENSITIVE INFORMATION SHOULD FALL INTO THIS CATEGORY. PROPRIETARY COMPANY INFORMATION MAY BE COPIED AND DISTRIBUTED WITHIN ELIQUORPERMIT ONLY TO AUTHORIZED USERS. PROPRIETARY COMPANY INFORMATION DISCLOSED TO AUTHORIZED EXTERNAL USERS MUST BE DONE SO UNDER A NON-DISCLOSURE AGREEMENT.
  • CONFIDENTIAL COMPANY DATA - CONFIDENTIAL COMPANY DATA IS INFORMATION WHICH IS NOT TO BE PUBLICLY DISCLOSED IN ANY MANNER, REGARDLESS OF ITS ECONOMIC VALUE. THE DISCLOSURE, USE, OR DESTRUCTION OF CONFIDENTIAL COMPANY DATA CAN HAVE ADVERSE AFFECTS ON ELIQUORPERMIT AND POSSIBLY CARRY SIGNIFICANT CIVIL, FISCAL, OR CRIMINAL LIABILITY. THIS DESIGNATION IS USED LESS FREQUENTLY. IT IS USED FOR HIGHLY SENSITIVE INFORMATION WHOSE ACCESS IS RESTRICTED TO SELECTED, AUTHORIZED EMPLOYEES ONLY. THE RECIPIENTS OF CONFIDENTIAL INFORMATION HAVE AN OBLIGATION NOT TO REVEAL/SHARE/DISTRIBUTE THE CONTENTS TO ANOTHER INDIVIDUAL UNLESS THAT PERSON HAS A VALID NEED TO KNOW FOR THE INFORMATION UNDER APPROPRIATE AUTHORIZATION, AND VERIFICATION ONLY. COMPANY’S CONFIDENTIAL INFORMATION MUST NOT BE COPIED WITHOUT AUTHORIZATION FROM THE IDENTIFIED OWNER.
  • CONFIDENTIAL CUSTOMER DATA - CONFIDENTIAL CUSTOMER DATA IS DEFINED AS DATA THAT ONLY AUTHORIZED INTERNAL ELIQUORPERMIT ENTITIES OR SPECIFIC AUTHORIZED EXTERNAL ENTITIES CAN ACCESS. THE DISCLOSURE, USE, OR DESTRUCTION OF CONFIDENTIAL CUSTOMER DATA CAN HAVE ADVERSE AFFECTS ON ELIQUORPERMIT AND THEIR RELATIONSHIP WITH THEIR CUSTOMERS, AND POSSIBLY CARRY SIGNIFICANT LIABILITY FOR BOTH. CONFIDENTIAL CUSTOMER DATA IS ENTRUSTED TO AND MAY TRANSIT OR IS STORED BY ELIQUORPERMIT OVER WHICH THEY HAVE CUSTODIAL RESPONSIBILITY BUT DO NOT POSSESS OWNERSHIP.
  • PUBLIC CUSTOMER DATA - PUBLIC CUSTOMER DATA IS DEFINED AS THE DATA THAT ANY ENTITY EITHER INTERNAL OR EXTERNAL TO ELIQUORPERMIT CAN HAVE ACCESS TO. THE DISCLOSURE, USE, OR DESTRUCTION OF PUBLIC CUSTOMER DATA WILL HAVE LIMITED OR NO ADVERSE AFFECTS ON ELIQUORPERMIT OR THE CUSTOMER, AND CARRY NO SIGNIFICANT LIABILITY. PUBLIC CUSTOMER DATA IS ENTRUSTED TO, AND MAY TRANSIT OR BE STORED BY ELIQUORPERMIT OVER WHICH THEY HAVE CUSTODIAL RESPONSIBILITY BUT DO NOT POSSESS OWNERSHIP.

10. ASSET MANAGEMENT

WE MAINTAIN ELECTRONIC RECORDS FOR IDENTIFICATION, CLASSIFICATION, RETENTION AND DISPOSAL OF ASSETS. THE OWNER OF SUCH A RECORD IS THE INFORMATION SECURITY OFFICER. IT IS THE RESPONSIBILITY OF THE INFORMATION SECURITY OFFICER TO ENSURE ACCURATE, TIMELY AND PERIODIC REVISION OF THE ASSET MANAGEMENT RECORDS. COMPANY-ISSUED DEVICES ARE EQUIPPED WITH HARD DISK ENCRYPTION AND UP-TO-DATE ANTIVIRUS SOFTWARE. ONLY COMPANY-ISSUED DEVICES ARE PERMITTED TO ACCESS CORPORATE AND PRODUCTION NETWORKS.

11. PRODUCT DEVELOPMENT

OUR DEVELOPMENT TEAM EMPLOYS SECURE CODING TECHNIQUES AND BEST PRACTICES. OUR DEVELOPERS ARE FORMALLY TRAINED IN SECURE WEB APPLICATION DEVELOPMENT PRACTICES UPON HIRE AND AT LEAST ONCE EVERY SIX MONTHS.

12. INFORMATION SECURITY INCIDENT RESPONSE MANAGEMENT

WE MAINTAIN SECURITY INCIDENT RESPONSE POLICIES AND PROCEDURES COVERING THE INITIAL RESPONSE, INVESTIGATION, PUBLIC COMMUNICATION, AND REMEDIATION. THESE POLICIES ARE REVIEWED REGULARLY AND TESTED BI-ANNUALLY.

13. NOTIFICATION OF BREACH

DESPITE ALL THE BEST EFFORTS, NO METHOD OF TRANSMISSION OVER THE INTERNET, OR METHOD OF ELECTRONIC STORAGE, IS PERFECTLY SECURE. THEREFORE, WE CANNOT GUARANTEE ABSOLUTE SECURITY. HOWEVER, IF WE LEARN OF A SECURITY BREACH, WE WILL NOTIFY AFFECTED USERS SO THAT THEY CAN TAKE APPROPRIATE PROTECTIVE STEPS. WE ARE COMMITTED TO KEEPING OUR CUSTOMERS FULLY INFORMED OF ANY MATTERS RELEVANT TO THE SECURITY OF THEIR ACCOUNT AND TO PROVIDING CUSTOMERS ALL INFORMATION NECESSARY FOR THEM TO MEET THEIR OWN REGULATORY REPORTING OBLIGATIONS.

14. BUSINESS CONTINUITY

OUR DATABASES ARE BACKED UP ON A REGULAR BASIS AND ARE VERIFIED REGULARLY. BACKUPS ARE ENCRYPTED AND STORED WITHIN THE PRODUCTION ENVIRONMENT TO PRESERVE THEIR CONFIDENTIALITY AND INTEGRITY AND ARE TESTED REGULARLY TO ENSURE AVAILABILITY.

15. CUSTOMER RESPONSIBILITIES

KEEPING YOUR DATA SECURE ALSO REQUIRES THAT USER MAINTAINS THE SECURITY OF HIS ACCOUNT BY USING SUFFICIENTLY COMPLICATED PASSWORDS AND STORING THEM SAFELY. YOU SHOULD ALSO ENSURE THAT YOU HAVE SUFFICIENT SECURITY ON YOUR OWN SYSTEMS.

16. LOGGING AND MONITORING

OUR SYSTEMS LOG INFORMATION TO A CENTRALLY MANAGED LOG REPOSITORY FOR TROUBLESHOOTING, SECURITY REVIEWS, AND ANALYSIS BY AUTHORIZED PERSONNEL. WE WILL PROVIDE USERS WITH REASONABLE ASSISTANCE IN THE EVENT OF A SECURITY INCIDENT IMPACTING THEIR ACCOUNT.

17. CONTACT

IN CASE OF ANY QUERIES THAT YOU MAY HAVE PLEASE REACH TO US AT ELIQUORPERMIT@GMAIL.COM.