Our Commitment
The main theme of the TS ISO/IEC 27001:2022 and TS EN ISO 9001:2015 Information Security and Quality Management System at Arksoft Information Technologies is to demonstrate that Information Security and Quality management is ensured within human resources, infrastructure, software, hardware, user information, organizational information, third-party information, and financial resources; to promote the use of process approach and risk-based thinking; to measure Information Security and Quality management process performance; to provide a framework for setting quality and information security objectives; and to regulate relationships with third parties on information security matters.
In this regard, the purpose of our ISMS and Quality Policy is to protect Arksoft Information Technologies' information assets against all kinds of threats that may occur internally or externally, knowingly or unknowingly; to ensure accessibility to information as required by business processes; to meet legal and regulatory requirements; to carry out continuous improvement activities; and to ensure the continuity of the three fundamental elements of the Information Security and Quality Management System in all activities:
Core Principles
Confidentiality
Preventing unauthorized access to critical information
Integrity
Demonstrating that the accuracy and completeness of information is ensured
Availability
Demonstrating that authorized personnel can access information when needed
We are committed to ensuring the security of all data, not only those stored electronically, but also in written, printed, verbal, and similar formats. We provide Information Security and Quality Management training to all personnel to raise awareness. We report all actual or suspected vulnerabilities in Information Security to the ISMS Team and ensure investigation by the ISMS Team.
We prepare, maintain, and test business continuity plans. We conduct periodic assessments on Information Security and Quality Management to identify existing risks, review action plans based on assessment results, and follow up on their implementation. We prevent all kinds of disputes and conflicts of interest that may arise from contracts. We meet business requirements for information accessibility and information systems.
This has been established as our Information Security and Quality Management System Policy.
08/08/2024
General Manager