Governance & Security Policy
Control
Status
Information Security Policy
Neuro+ has an Information Security Policy that covers confidentiality, integrity and availability. This policy is reviewed regularly and communicated to staff and third parties.
Clear Roles and Responsibilities
At Neuro+, we ensure all personnel understand their roles and responsibilities through our comprehensive Security Roles and Responsibilities Matrix.
Our key roles include:
- CISO: Leads overall security governance and risk management 
- CTO/Managing Engineer: Oversees technical leadership and system ownership 
- Cyber Security Officer: Manages day-to-day security operations and training 
- Senior Software Engineers: Handle frontend and backend development and database security 
- Project Manager: Coordinates change management and business continuity 
Segregation of Duties
Neuro+ ensures segregation of duties is enforced through a comprehensive policy framework and formal approval gates. Specifically:
1. We implement Role-Based Access Control (RBAC) with multi-level approval processes
2. Our organisational structure separates key functions
3. We maintain documented evidence