Information Security Policy

Our Policy
Ensuring information security is critical to Center On Digital's success and continuity. Where information security is not adequately ensured, there is a risk of reputational damage as well as financial loss. To prevent such outcomes, the ISO/IEC 27001 standard is applied to control and manage information security risks.
Center On Digital carries out the following activities, which include the scope of the internationally recognised ISO/IEC 27001 Information Security Management System framework:
- Establishing, operating, monitoring, reviewing and continually improving an Information Security Management System in line with ISO/IEC 27001
- Protecting information systems, minimising business risk and increasing trust in our work by meeting the requirements of ISO/IEC 27001 and applicable laws and regulations
- Identifying, systematically reviewing and managing (eliminating or reducing) risks to information assets
- Determining and implementing the necessary security measures
- Protecting the standing and reputation of organisations
- Continuously monitoring and reviewing information security threats and opportunities, and taking the necessary measures by developing solutions to guard against their harmful effects
- Raising information security awareness by organising seminars, training and workshops, and preparing presentations and documents that build stakeholders' competencies in this field
- Allocating all resources needed to continually improve the level of information security and manage controlled risks
- Sharing information security objectives within the organisation to build awareness, reviewing them regularly, evaluating the results and making any improvements and adjustments deemed necessary
- Signing a non-disclosure agreement with the client before any information security engagement, legally safeguarding all information and documents obtained during and after the work on the basis that they are the client's confidential property
- Fully complying with laws, regulations and other legislation on the protection of personal data
Center On Digital may amend the provisions of this Information Security Policy at any time by publishing them on its website; amended provisions take effect on the date they are published.










