Business Continuity Policy

Our Information Security and Business Continuity Policy

Our organization prioritizes customer satisfaction in the services it provides and considers knowledge as one of our most valuable assets. Information security and the protection of personal data are the cornerstones of our activities. In this context, we meticulously implement all administrative and technical measures and act with a continuous improvement mentality.

Within the framework of our integrated management system:
We identify our information assets and assess their impact on our business processes considering replacement costs, confidentiality, corporate image, legal and regulatory obligations, and potential damages.
We comprehensively analyze threat probabilities, considering the magnitude of vulnerabilities, the effectiveness of existing controls, potential attackers' motivations, the attractiveness of the information to competitors, gaps in access controls, and integrity risks.
We identify and evaluate risks related to confidentiality, integrity, and availability, and implement necessary controls for any situation above the acceptable risk level.
We aim to prevent any integrated breach incidents and develop a coordinated and effective response capacity in case of a potential incident.
We strive to prevent any interruptions that could threaten business continuity and, where not possible, to resume our operations within the determined recovery time.
We regularly measure the performance of our Integrated Management processes, set goals with this data, and continuously update our investments in infrastructure, working environment, hardware, software, and training to mitigate our weaknesses.
We commit to maintaining the security standards required by our business, our customers, and legal obligations, fulfilling all applicable conditions thoroughly, and keeping customer satisfaction at the highest level.
This policy is adopted and implemented by all our employees with the full support of our management.

General Manager