Information Security Policy
As OMSAN Logistics, with the awareness that information is a critical corporate asset in terms of the continuity and reliability of our activities, in order to protect the confidentiality, integrity and availability of the information we own and for which we are responsible, we undertake to:
- Determine and monitor information security objectives by taking into account our Company’s strategic direction, activities, the needs and expectations of relevant parties, and information security risks,
- Protect information assets against unauthorized access, use, disclosure, modification, loss, deterioration and interruptions throughout their lifecycle through appropriate security measures,
- Systematically identify and assess information security risks and manage them at acceptable levels,
- Comply with applicable legal, regulatory, contractual and other requirements relating to information security and the protection of personal data,
- Reduce the impacts and recurrence of information security incidents by ensuring that they are reported and assessed in a timely manner and that the necessary interventions are carried out,
- Appropriately manage information security risks arising from activities carried out by customers, employees, business partners, suppliers and other relevant parties,
- Improve our employees’ awareness and competencies regarding information security and ensure that information security roles and responsibilities are understood,
- Provide the necessary resources for the effective operation of the Information Security Management System; and continuously improve the suitability, adequacy and effectiveness of the system in accordance with the requirements of ISO/IEC 27001.