toolkit logo
toolkit logo

INFORMATION SECURITY POLICY

The unceasing effort for the continuous improvement of information security constitutes a primary concern of MERIMNA ASTHENON S.A. and a philosophy shared by all its employees.

It is the Company’s policy to ensure that:

  • The confidentiality and integrity of information are maintained by granting access only to authorized persons.
  • The availability of information and systems is maintained through the establishment and implementation of a business continuity plan.
  • Staff is trained on information security matters and is aware that compliance with this policy is mandatory.
  • All information security breaches, as well as suspected weaknesses, are reported to the appropriate channels and investigated.
  • All executives are directly responsible for the implementation of the policy and for ensuring staff compliance within their areas of responsibility.

To this end, the Company has developed and implements an Information Security Management System (ISMS) based on the requirements of the international standard ISO/IEC 27001:2022.

The Company is committed to the compliance of its services with all legal and regulatory requirements as well as contractual obligations towards its clients regarding information security and personal data protection pertaining to its activities.

The Company is committed to its continuous improvement regarding its information security performance through:

  • The systematic monitoring of the effectiveness and suitability of the Information Security Management System and the investigation of the causes of problems and weaknesses, in order to define and implement necessary corrective and/or preventive actions.
  • The establishment and review of objective and measurable information security objectives.
  • The provision of necessary resources for the effective operation of the Information Security Management System.
  • The proper organization and training of staff and the encouragement of continuous improvement.

The Information Security Policy is reviewed at regular intervals regarding its continuing suitability and is amended whenever deemed necessary.

.