SECURITY POLICY
TRUEITSYSTEMS S.L manages its information systems in line with best practices and in accordance with ISO 27001:2022. The Company adopts the following security principles:
- Regulatory Compliance: All information systems comply with applicable legal and regulatory security requirements.
- Risk Management: Risks are minimised to acceptable levels while maintaining a balance between security controls and information needs.
- Awareness and Training: Employees receive security training and awareness programmes.
- Confidentiality, Integrity, and Availability:
- Ensuring that only authorised individuals can access data.
- Maintaining the accuracy of information and processes.
- Guaranteeing business continuity through contingency plans.
- Accountability: All employees must adhere to security policies.
- Continuous Improvement: Security controls are periodically reviewed and enhanced.
- Incident Management: A response plan is in place to address security breaches effectively.