Continually improve the own Information Security Management System.
Apply and comply with the regulatory requirements and any other significantrequirement, rule, or regulation applicable in the field of Information and PersonalData Security.
Securely store the managed information and thus prevent negative InformationSecurity Events in compliance with the principles of Confidentiality, Integrity andAvailability.
Sensibilise and train the right personnel about Information Security topics.
Provide a framework for establishing and reviewing Information Security Objectives.
Classify the information according to the criteria defined by the organization.
Disseminate the principles and values declared in the company policy to make themeffective through communication to and from the various interested parties so thatthey are well understood and followed.
Periodically review the policy and objectives whenever there is a need, following theimplementation of changes and assessing their suitability as well as making thecommitment to improve it effectively.