1. Home
  2. »
  3. Legal Center
  4. »
  5. Data Protection and Security Policy

Data Protection and Security Policy

Effective Date: January 1, 2025
Last Updated: January 1, 2025
Contact: info@dxbmark.com
Support: support@dxbmark.com


1. Introduction

DXBMARK is committed to protecting the security, integrity, and confidentiality of all customer data. This Data Protection & Security Policy outlines:

How we protect personal and business data.
Our security measures against breaches and cyber threats.
Compliance with UAE Data Protection Laws & GDPR.

DXBMARK operates under the following legal frameworks:
UAE Federal Decree-Law No. 45 of 2021 on Personal Data Protection (Link)
UAE Cybercrime Law (Federal Decree-Law No. 34 of 2021) (Link)
General Data Protection Regulation (GDPR) – EU (Link)

By using DXBMARK services, you consent to our data security practices outlined in this policy.


2. Compliance with International Standards

DXBMARK adheres to global security and data protection frameworks, including:

General Data Protection Regulation (GDPR) – European Union.
California Consumer Privacy Act (CCPA) – United States.
ISO 27001 – Information Security Management Standards.
NIST Cybersecurity Framework.
UAE & GCC Data Protection Laws.

📌 DXBMARK continuously updates its security measures to align with these global standards.


3. Data Security Measures

DXBMARK employs multi-layered security strategies to protect all customer and business data.

Encryption: All sensitive data is encrypted at rest and in transit using AES-256 and TLS 1.3.
Access Controls: Only authorized personnel have access to critical data, using role-based access control (RBAC) and multi-factor authentication (MFA).
Firewall & Intrusion Prevention: Our systems are protected by next-generation firewalls and AI-driven intrusion detection systems.
Regular Security Audits: We conduct quarterly penetration testing and internal security assessments to identify and eliminate vulnerabilities.

🚨 DXBMARK does not store credit card details or sensitive payment information—all transactions are handled through PCI-DSS compliant payment processors.


4. Data Retention & Disposal

Retention Period: Data is stored for X years unless required for legal or regulatory reasons.
Secure Data Disposal: When no longer needed, data is permanently deleted or anonymized using industry-standard destruction methods.

📌 For details, refer to our [Privacy Policy].


5. Data Breach Response & Incident Handling

In the event of a security breach, DXBMARK follows a strict Incident Response Plan:

Detection & Investigation: Suspicious activity is analyzed by our Security Operations Center (SOC).
Notification & Response:

  • If a breach affects customer data, DXBMARK will notify affected customers within 72 hours (per GDPR requirements).
  • Affected users will be given clear instructions on mitigating risks.
    Remediation & Prevention: Security patches, system updates, and corrective actions will be deployed immediately.

📌 To report a security concern, contact: support@dxbmark.com.


6. Customer Responsibilities

To maintain security, DXBMARK expects users to:

✔ Use strong passwords and enable multi-factor authentication (MFA) where applicable.
✔ Report any suspicious activity or potential breaches immediately.
✔ Keep all software, plugins, and integrations updated to prevent vulnerabilities.
Avoid sharing login credentials with unauthorized persons.

🚨 DXBMARK is not responsible for breaches caused by user negligence, such as weak passwords or phishing attacks.


7. Third-Party Security & Data Sharing

DXBMARK integrates with third-party cloud providers, payment processors, and analytics tools. We ensure that all partners:

✔ Adhere to GDPR & ISO 27001 security standards.
✔ Implement end-to-end encryption and secure API connections.
✔ Undergo regular security audits to ensure compliance.

📌 For more details, refer to our [Third-Party Data Sharing Policy].


8. Governing Law & Compliance

✔ This policy is governed by United Arab Emirates (UAE) data protection laws, alongside GDPR & CCPA compliance.
✔ Disputes related to data security will be resolved under Dubai courts.

📌 For more information on legal compliance, refer to our [Dispute Resolution Policy].


9. Changes to This Policy

DXBMARK reserves the right to modify this Data Protection & Security Policy to comply with new security threats or legal requirements. Any major updates will be:

Published on our website.
Communicated to customers via email if significant changes occur.

Last Updated: January 1, 2025

📧 For security-related inquiries, contact: info@dxbmark.com.


🔗 Related Policies

📌 [Privacy Policy]
📌 [Third-Party Data Sharing Policy]
📌 [Acceptable Use Policy]
📌 [Dispute Resolution Policy]


DXBMARK Ensures Compliance with Global Security Standards & UAE Data Protection Laws

By using DXBMARK services, you acknowledge and agree to this Data Protection & Security Policy.