Information Security Management System Policy

Aktaş Holding;

It aims to ensure the security of information about all existing and future activities; ensure business continuity with minimum interruption; ensure confidentiality of all information belonging to the Company and third parties that it is liable to protect, and to protect the all kinds of physical and electronic information assets used in the continuation of business processes and the services in accordance with the criteria of Confidentiality, Integrity and Accessibility.Aktaş Holding Management declares its commitment to the establishment, realization, operation, monitoring, reviewing, maintenance and continuous improvement of the Information Security Management System (ISMS) in accordance with TS ISO / IEC 27001 Standard by demonstrating the following:

To analyze the risks on the Assets and Processes and to perform risk management in this framework by setting out risk assessments and risk criteria according to the analysis results.
To define the importance of fulfilling the information security objectives and compliance with information security policies, the responsibilities to the statutes and contracts, and the need for continuous improvement.
To provide sufficient resources to build, realize, operate, monitor, review, maintain and continuously improve ISMS.
To organize and manage the necessary actions to determine risk acceptance criteria and acceptable risk levels.
To announce the innovations, changes and developments within the framework of Information Security Management System to ensure awareness of all employees and stakeholders.

İskender Ulusay
Chief Executive Officer

Information society services | 2019 Aktaş Holding. All rights are reserved..