QUASAR IS CERTIFIED ISO 27001
OUR POLICY
Valuable information needs to be protected
We receive information, we store it, we manage it and we transmit it – we simply need it to offer our services.
Therefore, information is valuable and needs to be protected based on the needs.
We need to protect our information so that:
- we preserve its CONFIDENTIALITY;
- we ensure its INTEGRITY;
- we guarantee its AVAILABILITY.
Our policy statement serves this purpose:
- to protect the organization’s informational assets against all internal, external, deliberate or accidental threats
- to provide a comprehensive approach to information security across the company related to stakeholders documentation we manage;
- to provide guidance to users and administration team on appropriate behaviors and controls required in order to maintain the integrity of information;
- to set out the intentions in managing information security as part of effective governance where:
- information will be protected against any unauthorized access;
- confidentiality of information will be assured;
- integrity of information will be maintained;
- availability of information for business processes will be maintained;
- legislative and regulatory requirements will met;
- business continuity plans will be developed, maintained and tested;
- information security training will be available for all employees;
- all actual or suspected information security breaches will be reported to the Manager and will be thoroughly investigated.
RESPONSIBILITY
Chief Executive Officer – has overall responsibility for maintaining this Policy and providing guidance on its
implementation. All managers are directly responsible for ensuring that policies and procedures are followed within their business areas. It is the responsibility of each employee to adhere to the business ISMS policies and procedures.
