Information Security General Policy
MORTEN, in line with the ISO 27001:2013 Information Security Management System Standard;
- Provide secure access to its and its stakeholders' information assets,
- Protect the availability, integrity and confidentiality of information,
- To assess and manage the risks that may occur on the information assets of itself and its stakeholders,
- Maintain the credibility and brand image of the organization,
- To apply the sanctions deemed necessary in case of information security breach,
- To provide information security requirements arising from national, international or sectoral regulations to which it is subject, to fulfill the requirements of relevant legislation and standards, to meet its obligations arising from agreements, and corporate responsibilities towards internal and external stakeholders,
- Reduce the impact of information security threats on business/service continuity and ensure business continuity and sustainability,
- To maintain and improve the level of information security with the established control infrastructure,
- It undertakes to provide trainings to develop competencies in order to increase information security awareness.