ISO 27001 INFORMATION SECURITY MANAGEMENT SYSTEM

Like other significant commercial assets, information is also an asset with a value for the company and thus needs to be protected accordingly. In order to create a secure environment with respect to the protection and confidentiality of information, Hidroser has secured the information database both within its own database and of its customers and suppliers.

Hidroser has identified the information databases, analysed the possible threats towards these assets and specified which controls apply in case of the development of such risks. Hidroser attaches importance to the information assets of its customers in line with ISO 27001 Information Security Management System and reassures its customers on account of this approach.

OUR INFORMATION SECURITY POLICY

The scope of ISO 27001 Information Security Management System within our company is as follows:

1. To manage information assets, provide the security of such assets, identify the measures required to be provided against the risks and theats, develop and implement the required controls.

2. To identify the impacts and risks of the threats on the confidentiality, integrity and accessibility of the information assets and provide the measures required to minimize such risks and perform continuous follow-up.

3. To fulfill the contractual liabilities of our company by acting as required by national or international legal arrangements and associated legislation.

4. To minimize the impact of events by quickly intervening in the problems that might arise by reducing the impact of threats towards information security and provide protection against permanent adverse effects on information security.