Purpose

As Ergün Kimya, ensuring information security, protecting our corporate assets, and safeguarding the confidentiality of customer information are our top priorities. This policy has been established to manage information security risks, ensure business continuity, and guarantee compliance with legal obligations related to information security.

Scope

This policy applies to all employees, business partners, suppliers, and information processing activities of Ergün Kimya. It covers all information that is shared physically, electronically, or verbally.

Core Principles

  • Confidentiality: Necessary measures are taken to prevent unauthorized access, use, disclosure, alteration, or destruction of internal and customer information.

  • Integrity: The accuracy and reliability of information are maintained, and unauthorized modifications are prevented.

  • Availability: The continuity of systems is ensured so that authorized users can access information when needed.

Responsibilities

  • All employees are required to act in accordance with the information security policy.

  • In case of detecting an information security breach, employees must immediately report it to the relevant department.

  • The management team is responsible for ensuring that information security strategies are implemented and kept up to date.

Information Security Management System (ISMS)

  • Ergün Kimya establishes and maintains processes in accordance with ISO 27001 standards within the framework of its information security management system.

  • Information security risks are regularly assessed, and necessary measures are taken to minimize them.

  • Training programs are organized to continuously increase employee awareness.

Legal and Regulatory Compliance

Ergün Kimya manages its information security processes in accordance with applicable laws and industry standards. The Personal Data Protection Law (KVKK) and other relevant regulations are strictly enforced.

Continuous Improvement

Regular monitoring, auditing, and improvement activities are carried out to enhance information security performance.

Incident Management

An effective incident management plan is implemented to minimize the impact of information security breaches and prevent similar incidents in the future.

Policy Communication

This policy has been communicated to all employees and is accessible through Ergün Kimya’s website and internal communication channels.

Approval and Enforcement

This policy has been approved and enacted by the management of Ergün Kimya. All employees are expected to comply with the policy.

By adopting this policy, Ergün Kimya commits to fulfilling its responsibilities in the field of information security and maintaining the trust of all stakeholders.

Management of Ergün Kimya Kozmetik

Follow Ergun Kimya

on Social Media