ISO/IEC 27001 — Information Security Management

1. Introduction

The company prioritizes the protection of information and data processed during its activities. To achieve this, we implement and maintain an information security management system aligned with ISO/IEC 27001.

This document provides general information about our approach to information security.

2. What is ISO/IEC 27001

ISO/IEC 27001 is an international standard that defines requirements for an Information Security Management System (ISMS). The standard is designed to ensure the confidentiality, integrity, and availability of information through a systematic approach to managing information security risks.

3. Scope of Application

The principles and requirements of ISO/IEC 27001 are applied to processes related to:

  • processing and storage of information;
  • management of access to information resources;
  • use of information systems and services;
  • handling data of clients, partners, and employees;
  • internal operational and IT processes.

4. Core Information Security Principles

In our activities, the company adheres to the following key information security principles:

  • ensuring the confidentiality of information;
  • protecting data from unauthorized access, alteration, or destruction;
  • maintaining the availability of information for authorized users;
  • managing information security risks;
  • continuous improvement of information security processes.

5. Information Security Policy

The company maintains an internal Information Security Policy that defines rules and requirements for information protection. This policy is mandatory for all employees and involved parties in accordance with their roles and responsibilities.

For security reasons, the full text of internal policies and procedures is not publicly disclosed.

6. Relationship with Personal Data Protection

Our information security approach, based on ISO/IEC 27001, supports compliance with personal data protection regulations, including GDPR, regarding technical and organizational security measures.

7. Contact Information

For information security–related inquiries, please contact us at: [email protected]

8. Changes to This Document

The company reserves the right to update this document periodically to reflect changes in information security practices or applicable regulatory requirements.