Effective Date: August 7, 2026
Last Updated: August 7, 2026
At VRiseIn, LLC (“VRiseIn,” “we,” “us,” or “our”), security is a fundamental part of how we design, develop, deliver, and support technology solutions.
As a Texas-based technology and IT services company, we understand that our customers rely on us to protect their systems, applications, infrastructure, and information. Our security approach is designed to help organizations reduce risk, protect critical assets, maintain operational resilience, and build trust in their digital environments.
This Security Policy describes the principles and practices that guide VRiseIn’s approach to information security across our technology services, internal operations, development environments, infrastructure, and customer engagements.
Security is not an afterthought at VRiseIn.
We work to incorporate security considerations throughout the technology lifecycle, from initial strategy and architecture through development, deployment, monitoring, maintenance, and retirement.
Our security objectives include:
We believe security should be incorporated into technology solutions from the beginning rather than added after development is complete.
Depending on the project and applicable requirements, security considerations may be incorporated into:
Security requirements may vary depending on the customer’s industry, regulatory obligations, technology environment, and project scope.
Our security approach is based on three fundamental principles.
We work to prevent unauthorized access or disclosure of information.
We work to protect information and systems from unauthorized modification or destruction.
We work to support reliable access to systems and information when required.
These principles help guide our technology architecture, operational processes, and security practices.
VRiseIn applies access-control principles designed to limit access to systems and information based on legitimate business and operational requirements.
Where appropriate, security controls may include:
Access to customer information and systems is intended to be limited to authorized personnel who require access to perform their responsibilities.
Depending on the technology environment, VRiseIn may implement security mechanisms such as:
Customers are also responsible for maintaining appropriate authentication and access controls within systems they own or control.
We take reasonable measures designed to protect information against unauthorized access, disclosure, alteration, loss, or destruction.
Depending on the Service and technical environment, security measures may include:
The specific security controls applicable to a customer environment may be defined by the relevant service agreement, Statement of Work, security requirements, or data processing agreement.
For software development projects, VRiseIn promotes secure development practices throughout the Software Development Lifecycle (SDLC).
Depending on project requirements, practices may include:
Security requirements may be incorporated into development planning, testing, deployment, and maintenance activities.
We design applications with security considerations appropriate to their intended use and risk profile.
Application security measures may include:
For high-risk applications, additional security assessments or testing may be performed when included in the project scope.
VRiseIn may design, implement, or manage cloud environments using platforms such as:
Cloud security practices may include:
Cloud environments operate under a shared-responsibility model. Customers remain responsible for security responsibilities assigned to them by the applicable cloud provider and service agreement.
Depending on the environment, VRiseIn may implement network security controls such as:
Network security architecture is designed according to the specific business and technical requirements of each environment.
Where included within our managed IT or security services, endpoint security may include controls designed to protect:
Security controls may include endpoint protection, patch management, access controls, monitoring, and configuration management.
VRiseIn may perform or recommend vulnerability assessments as part of applicable security engagements.
Depending on the agreed scope, vulnerability management may include:
Customers remain responsible for approving and implementing remediation actions unless VRiseIn has been specifically contracted to perform them.
Where specifically authorized and included within a project scope, VRiseIn may provide or coordinate penetration testing and security assessments.
Security testing must be performed only against systems for which the customer has appropriate authorization.
Testing may evaluate areas such as:
Testing scope, methodology, timing, reporting, and remediation requirements should be defined in a separate agreement or Rules of Engagement.
Where included in a customer’s Service, VRiseIn may use monitoring technologies to identify unusual activity, operational issues, or potential security events.
Monitoring capabilities may include:
The availability and scope of monitoring depend on the customer’s service plan, technical environment, and applicable agreement.
VRiseIn maintains processes for identifying, assessing, responding to, and recovering from security incidents affecting systems under our responsibility.
Potential security incidents may include:
Our response may include:
Where required by applicable law or contractual obligations, we will provide appropriate notifications regarding qualifying security incidents.
Security is a shared responsibility between VRiseIn and our customers.
Customers are responsible for maintaining appropriate security practices within systems, applications, accounts, devices, and infrastructure under their control.
Customers should:
Where a customer’s actions or configuration affect security, VRiseIn cannot guarantee protection against resulting security incidents.
VRiseIn promotes security awareness among personnel who have responsibilities involving company systems, customer environments, or sensitive information.
Security awareness may include education relating to:
Access to systems and information is intended to be granted according to job responsibilities and business requirements.
Where appropriate, personnel access may be:
Contractors and third-party personnel may be subject to applicable contractual and security requirements.
VRiseIn may rely on third-party technology providers for services such as:
We seek to work with reputable technology providers appropriate to the services being delivered.
Third-party providers maintain their own security policies and controls, and their security responsibilities may be governed by their respective agreements.
Security and privacy are closely connected.
VRiseIn’s collection and processing of personal information is described in our Privacy Policy.
Depending on the customer, service, industry, and applicable regulations, additional contractual privacy and security requirements may apply.
VRiseIn recognizes that organizations may operate under different regulatory and industry requirements.
Depending on the customer’s needs, our technology solutions may be designed to support requirements or security objectives associated with frameworks and regulations such as:
Compliance depends on the complete technology environment, organizational policies, processes, personnel, vendors, and controls.
VRiseIn does not represent that a particular Service alone guarantees regulatory compliance unless expressly stated in a written agreement.
VRiseIn may provide technology solutions to healthcare organizations.
Where applicable, healthcare projects may incorporate security and privacy requirements relating to protected health information.
Specific healthcare security obligations may be established through appropriate agreements, including a Business Associate Agreement where legally required.
Customers should not submit protected health information through general website forms unless specifically instructed to use an approved secure channel.
VRiseIn may provide technology services to financial institutions and businesses handling financial information.
Customers remain responsible for implementing appropriate security controls within systems they operate.
Where payment processing is handled by third-party payment providers, payment information may be processed according to the provider’s security and privacy practices.
VRiseIn develops and implements AI-powered technologies with security and responsible-use considerations.
Depending on the AI solution, security measures may include:
Customers should not submit confidential, regulated, or sensitive information to AI systems unless the applicable service specifically supports such processing.
AI outputs should be reviewed appropriately before being used for sensitive or consequential decisions.
For Internet of Things (IoT), sensor, monitoring, and connected-device solutions, security may include:
The specific security architecture depends on the device, connectivity method, deployment environment, and project requirements.
Where included within a Service, VRiseIn may help organizations develop:
No backup or disaster recovery strategy can eliminate every possible risk.
Customers should maintain business continuity plans appropriate to their operational requirements.
If you believe you have identified a security vulnerability, unauthorized access, or security incident involving a VRiseIn system or Service, please contact us promptly.
Security Contact:
info@vrisein.com
Please include “Security Issue” or “Security Incident” in the subject line.
When reporting a potential security issue, please provide enough information for our team to understand and investigate the issue.
Please do not publicly disclose a suspected vulnerability before giving us a reasonable opportunity to investigate and address it.
We encourage responsible reporting of security vulnerabilities.
If you identify a potential vulnerability in a VRiseIn website, application, or Service:
VRiseIn may acknowledge security researchers who responsibly report vulnerabilities, subject to our discretion and applicable circumstances.
While VRiseIn implements reasonable security practices, no technology environment can be guaranteed to be completely secure.
Cybersecurity risks continually evolve, and new vulnerabilities and attack methods may emerge.
Accordingly, VRiseIn does not guarantee that:
Our objective is to continuously identify, reduce, monitor, and manage technology risks.
Security is an ongoing process.
VRiseIn continuously evaluates opportunities to improve:
As technology and cybersecurity threats evolve, our security practices may also evolve.
VRiseIn may update this Security Policy periodically to reflect:
The latest version will be published on this page with the updated effective date.
For questions regarding this Security Policy or our security practices, contact us.
VRiseIn, LLC
Head Office:
Sugar Land, Texas 77498
United States
Security & General Inquiries:
info@vrisein.com
Website:
www.vrisein.com
For security incidents or vulnerabilities, please include “Security Issue” in the email subject line.
For additional information, please review:
At VRiseIn, security is fundamental to responsible technology innovation.
We strive to build and deliver technology solutions that are secure, resilient, scalable, and designed with the evolving cybersecurity landscape in mind.
VRiseIn, LLC
Technology • Innovation • Digital Transformation
Sugar Land, Texas, USA