INFORMATION SECURITY POLICY
TS EN ISO 27001:2022 Information Security Management System Policy
At Maarifa, we implement an Information Security Management System (ISMS) in accordance with the TS EN ISO 27001:2022 standard to ensure the highest level of information security management in our services. Our aim is to protect our valuable assets, including people, infrastructure, software, hardware, customer information, organizational information, third-party information, and financial resources, and to continuously improve the performance of our information security management processes.
Objectives of Our ISMS Policy:
- Protection of Information Assets: Protect Maarifa's information assets against all types of threats, whether internal or external, intentional or accidental.
- Information Accessibility: Ensure information accessibility in accordance with business processes.
- Legal Compliance: Comply with legal regulations and requirements.
- Continuous Improvement: Continuously measure and improve the performance of information security management processes.
Fundamental Principles of Our Information Security Management System:
- Confidentiality: Preventing unauthorized access to important information.
- Integrity: Ensuring the accuracy and completeness of information.
- Availability: Ensuring that authorized individuals can access information when needed.
Scope of Application
This policy covers the security of all data, not only those held in electronic environments but also in written, printed, verbal, and similar forms. The continuity of the three basic principles of our Information Security Management System will be ensured in all activities carried out.
Our Policy Commitments:
- Education and Awareness: Provide information security management training to all employees to raise awareness.
- Reporting and Investigation: Report real or suspected information security breaches to the ISMS Quality Coordinator and ensure they are investigated by the coordinator.
- Meeting Business Requirements: Meet business requirements for information accessibility and information systems.
- Ensuring Continuity: Establish and maintain all processes to support business continuity.
This policy is embraced and implemented by all employees and stakeholders of Maarifa to achieve the company’s information security objectives.