Data Security Policy

In accordance with the ISO 27001:2013 Information Security Management System Standard, the company undertakes to:

  • Provide secure access to its own and its stakeholders' information assets,
  • Protect the availability, integrity, and confidentiality of information,
  • Assess and manage potential risks to its own and its stakeholders' information assets,
  • Protect the institution's reliability and brand image,
  • Apply necessary sanctions in the event of an information security breach,
  • Fulfill information security requirements arising from national, international, or sectoral regulations, relevant legislation, and standard requirements, as well as obligations from agreements and corporate responsibilities towards internal and external stakeholders,
  • Reduce the impact of information security threats on business/service continuity and ensure the continuity and sustainability of the business,
  • Maintain and improve the level of information security with the established control infrastructure,
  • Provide training to develop competencies in order to increase information security awareness.