During its activities, İnvekor Bilgi Teknolojileri may access the private access and connection information of the customers it serves, as well as configuration and communication information relating to critical devices. Protecting the confidentiality of these information assets, ensuring their security against unauthorized access, and maintaining their continuity are priority objectives for the Company.
The relationship of trust established with the customers, official institutions, and dealers with whom it collaborates is among İnvekor's most important values. The continuity of the services provided, the confidentiality of the information held, and the integrity of the customers' or the Company's internal information assets are of high importance.
Through this policy, the core principles adopted by İnvekor in the area of information security and privacy are given a systematic structure within the framework of the ISO 27001 Information Security Management System and the ISO 27701 Privacy Information Management System.
Information Security and Privacy Policy Principles
In order to protect the information assets of the institutions and organizations it serves and to ensure continuity, İnvekor Bilgi Teknolojileri adopts the following principles and commitments:
- With the participation of our employees, we have established the ISO 27001 Information Security Management System and the ISO 27701 Privacy Information Management System; we commit to continuously improving the effectiveness of these management systems.
- We regularly review our information security risks and apply appropriate controls for risks above the acceptable level.
- In order to keep our employees' information security awareness at a high level, we carry out regular training, awareness activities, and internal communication activities.
- We commit to fully complying with the laws and regulations of the Republic of Türkiye and the relevant national and international legislation.
- We maintain the currency and effectiveness of the Information Security and Privacy Policy by reviewing it at least once a year.
- We provide the necessary technical and physical infrastructure for the protection of personal data and corporate information, and support its continuous improvement.
All the principles and controls defined within the scope of the policy are supported by the İnvekor information security management system documentation, procedures, and instructions, and are binding on all employees and relevant parties.