Claim Settlement Ratio of 99.23%~

Close Button Close Button
X
NRI Services Helpline

Calling FromPhone Number (Toll Free)
AUSTRALIA80037371371
CANADA
HONG KONG
ISRAEL
MALAYSIA
NEW ZEALAND
PHILIPPINES
SINGAPORE
THAILAND
UNITED KINGDOM
BRUNEI8014605
INDONESIA0018030160202
JORDAN080023194
OMAN80074363
TURKEY00800142030059
VIETNAM1800400070
UNITED STATES18339680951
Calling us from INDIA18002097272
Rest of the World+912067871700
(Call charges apply)

  • Home >
  • Responsible Disclosure Security Bugs

Responsible disclosure of Security Bugs

Close Button
Call to Buy Symbol

Call to Buy

X
Terms & Conditions

I hereby authorize Bajaj Allianz Life Insurance Co. Ltd. to call me on the contact number made available by me on the website with a specific request to call back. I further declare that, irrespective of my contact number being registered on National Customer Preference Register (NCPR) or on National Do Not Call Registry (NDNC), any call made, SMS or WhatsApp sent in response to my request shall not be construed as an Unsolicited Commercial Communication even though the content of the call may be for the purposes of explaining various insurance products and services or solicitation and procurement of insurance business

 

Please refer to BALIC Privacy Policy

X
Something 2

Some Text 2

Responsible disclosure of security bugs

Bajaj Allianz Life Insurance Co. Ltd. (BALIC) is committed to ensuring the confidentiality, integrity and security of BALIC systems and ensuring the trust and confidence of our customers, investors and business affiliates and service providers. As part of the same, on an ongoing basis, BALIC endeavours to diagnose its security systems through multiple security checkpoints to ensure the security of BALIC systems and data, and safekeeping of the customer data/records ("security measures").

In addition to the above-mentioned security measures taken by BALIC, we intend to encourage the public at large to report any instance that they may consider as a security bug, in order to evaluate, assess and address the same. Hence, we urge you to report any threatened security breaches or system vulnerabilities that you may have encountered, noticed or made aware of, on any of our BALIC digital platforms at responsible_disclosure@bajajallianz.co.in.

 

How to report


1. Please report the security issues or vulnerability to responsible_disclosure@bajajallianz.co.in with the necessary details like description, screenshots, etc.

2. Kindly mention your full name, mobile number and email ID for us to be able to reach you.

Reporting rules

1. After the submission of any security issue/apprehended issue, BALIC reserves its right to validate the reported issues as a "vulnerability" or "not a vulnerability”.

2. BALIC will evaluate the reported issue, and where felt appropriate in its sole discretion, BALIC may reach out to you in order to work closely with you to address the issue(s)

3. Web apps, mobile apps, API security issues and network/service-related misconfigurations are categories which would be ideally considered.

4. Please avoid sending automated tool reports or automated findings without validation

5. You are advised to:

a. Maintain confidentiality

b. Refrain from accessing sensitive information, performing hacking/exploit actions. 

c. Refrain from publishing, advertising, disclosing the information in any physical/digital platform, including but not limited to any public forum/social media/private group or person, or indulging in any an action that may be prejudicial to the interests of BALIC. 

6. Kindly note that non-adherence to the above advice would be construed as improper public disclosure/misuse of information, which will warrant the initiation of appropriate legal action by BALIC.

BALIC's responsibility

1. In appropriate instances, BALIC may work with you until vulnerabilities are addressed. Please allow us a reasonable time to investigate the issue, depending on the criticality of the reported issue

2. Where felt necessary, we may address the risks appropriately by the exercise of the best possible efforts

Acknowledgement

1. You will NOT target BALIC's security infrastructure or attempt to use social engineering, spam, distributed denial of service (DDOS) attacks, etc.

2. If a severe vulnerability is detected and allows system access, data exfiltration, or any such similar issues, you will not proceed further and ensure immediate reporting of the same to BALIC

3. BALIC, in its sole discretion, may decide to address the security vulnerabilities, if any, in a manner that serves the interests of BALIC, its customers, group companies, service providers and agencies.

4. You will always maintain complete confidentiality of the reported issue/ apprehension about security vulnerability (before or after reporting to BALIC) and will NOT disclose the same with any person or entity.

5. Upon request by BALIC at any time, you may have to destroy your report and evidence shared and confirm to BALIC on the same.

6. By the mere submission of any apprehension about security vulnerability, you will NOT derive any right against BALIC, nor will you demand any action or threaten BALIC in any manner.

7. BALIC does NOT support the violation of applicable laws/regulations by you, either before, during or after reporting any vulnerability incident. Hence, care should be taken that your action does not result in a breach of law/regulation/agreement, etc., including but not limited to that of any person/organization; else, BALIC reserves its right to initiate appropriate legal action.

Open appreciation on our official website

We appreciate your gesture in coming forward to report an issue for being evaluated by BALIC. For cases where BALIC considers the same as a valid vulnerability, we will be happy to add you to the "Security Heros" list on our corporate website if you would like to be publicly recognised. For this, your name, email ID and social media handles will be added, as per your consent.

close
Ask for an Agent
Sign up for personal visit and tailored advice from our expert agents