INFORMATION SECURITY POLICY
Synthetrial’s Management, within the scope of its authority to establish the organization’s policies and strategies, has approved this Information Security Policy.
The objective of this Policy, aimed at all stakeholders, is to define and establish the principles, criteria, and objectives for improvement that govern actions in the area of information security, in line with the guidelines set out in the ISO/IEC 27001 standard.
Synthetrial considers the security of the information associated with its services to be one of the key factors in carrying out its activities, with the aim of guaranteeing confidentiality, integrity, and availability, protecting personal data, information privacy, and information systems against improper access and unauthorized modifications.
Part of Synthetrial’s strategic policy is the implementation and development of an Information Security Management System based on the identification, protection, detection, response, and recovery of information systems, with the company’s management providing the necessary resources to achieve this.
Synthetrial’s management is committed to continuously improving the Information Security Management System in place, through regular annual reviews and by setting improvement objectives and actions.
The full document, including the guiding principles and the commitments undertaken, is available below:
Reference document: POL-01 Information Security Policy.