ISO 27001 Certified Security & Compliance | LOGIQUE
home

BERANDA

about

TENTANG KAMI

services

LAYANAN

others menu

MENU LAIN

close

SECURITY & COMPLIANCE

We Protect Your Digital Business

From website development and internal systems to penetration testing, LOGIQUE ensures every solution is built and operated with the highest level of security, following international best practices.

Security & Compliance

Our Certifications & Compliance

ISO

Certifications & Audit

ISO 27001:2022

PDPA

Compliance & Regulations

PDPA Indonesia

ASPI

Audit & Penetration Testing Provider

Officially Registered with ASPI

Certified Security Team

Certified Security Team

OSCP+, OSCP, CRTO, CEH Master, PNPT, LPT

Data Center

Data Center

AWS (Singapore / Jakarta), Google Cloud (US/Asia)

Contact

Contact us for a reliable digital security solution.

We Comply with Globally Recognized Security and Privacy Standards

Certifications and Audit

Certifications and Audit

  • ISO 27001:2022: Information security management system independently tested and audited.
  • ASPI: Officially registered as a certified audit and security service provider with the Indonesian Payment System Association (ASPI).
  • Penetration Testing & Security Audit: Conducted by our in-house certified team holding OSCP+, CEH Master, and CRTO credentials, using OWASP and PTES standard testing methodologies.
Compliance & Regulations

Compliance & Regulations

  • PDPA Indonesia: LOGIQUE operates in accordance with the Personal Data Protection Act and the regulations of the Ministry of Communication and Digital Affairs.
  • Internal Security Framework: All security procedures, data classification, and access controls refer to ISO 27001 guidelines.
  • Continuous Compliance Review: Internal and external audits are conducted regularly to ensure compliance with applicable regulations.

Partner Technology

Amazon Web Services (AWS)

Service Hosting & Cloud Infrastructure
Location Singapore / Jakarta

Google Cloud Platform (GCP)

Service Hosting & Cloud Infrastructure
Location US / Asia

Cloudflare

Service Web Application Firewall & CDN
Location Global Edge Network

Stripe

Service International Payment Processing
Location US

Zendesk

Service Customer Support Platform
Location EU / US

Security Controls

Data Security

Data Security

  • AES-256 encryption for data at rest; TLS 1.3 for data in transit.
  • Daily single/multi-region backups with scheduled retention.
  • Implementation of a Data Classification Policy to define information sensitivity levels.
Access Control

Access Control

  • MFA system for both internal and client access.
  • Role-Based Access Control (RBAC) policy with regular access reviews.
  • Centralized authentication (SSO) and user activity logging.
Application & Network Security

Application & Network Security

  • Active WAF and real-time IDS/IPS.
  • Regular internal penetration testing conducted by OSCP+ & CEH Master–certified team.
  • Code reviews and security testing performed for every product release.
  • Scheduled patch management.
Organizational & Physical Security

Organizational & Physical Security

  • Regular security awareness training for all employees.
  • Physical access control for office and server rooms.
  • “Clean desk” policy and secure handling of sensitive documents.
Incident Response & Monitoring

Incident Response & Monitoring

  • Dedicated IRT team responds to security incidents within ≤ 24 hours.
  • Reporting and mitigation processes follow the incident response policy SOP.
  • Audit logs retained for at least one year for forensic purposes.

Basic Information Security Policy

LOGIQUE is committed to protecting all information and data managed from risks of loss, misuse, unauthorized access, leakage, and operational disruption. Information security is an integral part of LOGIQUE's operations and work culture.

Information Security Principles

We apply the CIA principles (Confidentiality, Integrity, Availability) in all information management:

  • Confidentiality: Information can only be accessed by authorized parties.
  • Integrity: Information is kept accurate, complete, and not modified without permission.
  • Availability: Information and systems are available when needed according to business requirements.

Security Commitment

LOGIQUE is committed to:

  • Implementing adequate technical and non-technical security controls.
  • Conducting periodic information security risk management.
  • Complying with applicable laws and security standards.
  • Maintaining client data confidentiality in accordance with agreements and legal provisions.
  • Increasing information security awareness through education and internal procedures

Scope

This policy applies to all:

  • Employees, management, and third parties collaborating with LOGIQUE.
  • Client data, internal data, information systems, and technology infrastructure.
  • Business processes involving information management.

Responsibilities

Every individual within the LOGIQUE environment is responsible for:

  • Protecting information that is accessed or managed.
  • Using information systems in accordance with policies and procedures.
  • Reporting security incidents in a timely manner.
Policy

Basic Information Security Policy

DOWNLOAD DOCUMENT

FAQ

  • Is LOGIQUE secure in maintaining customer data confidentiality?
    Yes. LOGIQUE strictly protects customer data confidentiality and does not sell or share any data for commercial purposes.
  • Can my data be stored in a specific location (e.g., Indonesia)?
    Yes. We offer data hosting options in Jakarta or other Asia-Pacific regions based on your requirements.
  • Can I request a security report?
    Yes. Please contact security-admin@logique.co.id to request SOC 2, ISO 27001, or penetration test reports.
FAQ
Additional Information

Building Trust Through Continuous Security

Digital security is not a final goal but a continuous process. LOGIQUE views information security as a long-term commitment rather than a temporary project. We cultivate an internal culture centered on security awareness, ensuring that every team member, from developers and marketers to management, understands their responsibility in protecting client data.

We also conduct regular evaluations and audits of all systems and infrastructure, including vendors and sub-processors. Any updates to policies, procedures, or external audit results are transparently announced on this page to maintain our accountability to the public.

In addition, LOGIQUE is committed to:

  • Providing a prompt and measured incident response in the event of a breach or security vulnerability.
  • Supplying concise security reports for prospective and active clients who require official documentation.
  • Collaborating with local and global security communities to continuously enhance our security practices in line with emerging digital threats.
We believe that security is not only about technology but also about trust and responsibility.