Information Security

The confidentiality, integrity and availability of information, in all its forms, are critical to the continued operation and governance of the company. Lack of adequate information security increases the risk of financial and reputational damage from which it may be difficult to recover.

This Policy constitutes the commitment of the Management for the orientation of the company in terms of information security. Provides necessary direction and support from Management on information security issues in accordance with business requirements and relevant laws and regulations. The implementation of the information security system aims to:

  • Ensure the protection of all company information systems and mitigate the risks associated with the theft, loss, misuse, damage or abuse of these systems.
  • Ensure that users are aware of and comply with Policies and Procedures.
  • Provide a secure work and information systems environment.
  • Ensure that all users understand their responsibilities for protecting the confidentiality and integrity of the data they handle.
  • Ensure information security training for all employees.
  • Protect the company from any type of impact through the abuse of its IT facilities/Infrastructure.
  • Ensure a cycle of ISMS continuous improvement.
  • Ensure monitoring and investigation of any security incident and data breaches.

Last Revision: July 2025