ISMS Policy

Our Information Security Management System (ISMS) is designed in alignment with international standards (ISO/IEC 27001:2022) and regional regulatory requirements to ensure confidentiality, integrity and availability of our information assets.

Purpose

The purpose of this ISMS Policy is to:

  • Safeguard customer and company data from unauthorized access, disclosure, alteration, or destruction.
  • Ensure compliance with applicable laws, regulations, and financial industry standards.
  • Build and maintain trust with our customers, partners, and regulators.
  • Provide a framework for continuous improvement of our security practices.

Scope

Brij Information Security and Management System(ISMS) covers the operations, processes, information assets, and people.

Policy Statements

  • Customer information and transaction records are protected using strong encryption both in transit and at rest.
  • Access to sensitive data is restricted to authorized personnel only, following the principle of least privilege.
  • Robust authentication and authorization mechanisms are enforced to prevent fraud or unauthorized activity.
  • All system changes and financial operations are logged, monitored, and subject to audit.
  • Our infrastructure is designed with redundancy and resilience to ensure high availability of remittance and currency exchange services.
  • Disaster recovery and business continuity plans are tested regularly.
  • We comply with data protection regulations, anti-money laundering (AML) laws, and other financial compliance requirements in the jurisdictions we operate.
  • Regular audits and assessments are conducted to ensure ongoing compliance.
  • Risks to our information assets are regularly assessed, documented, and mitigated.
  • Our ISMS framework is continuously reviewed and improved in line with emerging threats and regulatory changes.
  • All staff receive regular training on information security, fraud prevention, and data privacy.
  • Employees are required to report any suspected security incidents immediately.

Management Commitment

Senior management at Brij is fully committed to enforcing this ISMS Policy and providing the necessary resources to ensure its successful implementation.
By adopting these practices, we safeguard our customers’ trust, support regulatory compliance, and protect the integrity of the African fintech ecosystem.