CI&T被Everest Group两大AI应用PEAK Matrix®评估报告评选为"Major Contender" 2025年10月10日 CI&T在权威调研机构Everest Group最新发布的《面向AI就绪的应用转型服务PEEAK Matrix®评估报告》与《面向AI应用的应用开发服务PEAK Matrix®评估报告》两份年度报告中,均被评定为"Major Contender"。 更多
CI&T获得AWS良好架构授权合作伙伴认证 2024年9月26日 CI&T宣布获得亚马逊网络服务(AWS) “AWS良好架构授权合作伙伴” 。这一荣誉彰显了CI&T在帮助客户根据AWS最佳实践和指南,设计、构建及管理安全、可扩展应用程序方面的专业能力。 更多
使用增强编码技术提高生产力 2023年5月31日 基于数据科学的操作通常由强大的人工智能和机器学习工具组成,可大大简化流程。在企业的各个层面实现高绩效会带来积极的业务结果,快速交付的需求是不可争辩的。因此,数字效率的重要性毋庸置疑。 更多
CI&T荣获2024年拉美地区可持续发展合作伙伴奖 2024年12月03日 CI&T荣获2024年地理与全球AWS合作伙伴奖,成为拉美地区的可持续发展合作伙伴。这一奖项旨在表彰全球在推动客户创新和构建基于亚马逊网络服务(AWS)解决方案方面表现突出的领军企业。 更多
Responsible Vulnerability Disclosure Our approach to securitySecurity is a shared responsibility. We genuinely appreciate the work of security researchers, ethical hackers, and members of the cybersecurity community who help make technology safer.While we do not operate a bug bounty or reward program, we welcome responsible, good-faith vulnerability reports that help us identify and mitigate potential risks. This policy explains how to report security issues safely and what you can expect from us in return.ScopeThis policy applies only to systems, applications, services, and infrastructure owned or directly operated by us.The following are out of scope:- Systems or environments owned by customers, partners, vendors, or third parties- Social engineering, phishing, or interactions with employees or users- Denial-of-service, brute-force attacks, or stress testing- Physical security testing- Findings with no practical security impact or purely informational issuesHow to report a vulnerabilityIf you believe you have identified a security vulnerability, please report it to: securitytalk@ciandt.comTo help us investigate efficiently, please include:- A clear description of the issue- The affected system, URL, endpoint, or component- Steps to reproduce the issue using a non-destructive proof of concept- The potential security impact- Suggested remediation, if available- Your preferred contact informationReports that lack sufficient detail may not be reviewed.Responsible research guidelinesWe ask that all research conducted under this policy:- Is performed in good faith and in compliance with applicable laws- Is limited to the minimum testing required to confirm the vulnerability- Does not access, modify, copy, or exfiltrate data belonging to users or systems- Stops immediately if sensitive data is encountered and is reported without delay- Avoids service disruption, performance degradation, or persistence- Does not involve lateral movement or privilege escalation beyond proof of existenceCoordinated disclosurePlease allow us a reasonable amount of time to investigate and remediate the issue before any public disclosure. Coordinated disclosure helps protect users and systems while ensuring fixes are properly validated.What you can expect from usWhen a valid report is received, we will:- Acknowledge receipt within a reasonable timeframe- Assess the report and prioritize remediation based on risk and impact- Communicate with you as needed during the investigation- Notify you once the issue has been addressedReports submitted in accordance with this policy and in good faith will not result in legal action by our organization.Bug Bounty and Compensation PolicyCI&T does not currently have a formal bug bounty program. However, we recognize and appreciate the ethical work performed by security researchers who responsibly identify and report potential security vulnerabilities. Historically, we have received and addressed vulnerability reports even in the absence of any established reward program.We invite you to share the details of the potential vulnerability with us so that we can properly analyze it. Based on our assessment and the quality and impact of the findings, we may evaluate, at our sole discretion, the possibility of providing a goodwill reward in recognition of your effort and good faith.Submitting a report does not create any contractual, financial, or legal obligation between you and our organization.Policy updatesThis policy may be updated periodically. The latest version published on our website is always the authoritative version. Contact us