Information Security Policy

Felya Kozmetik Sanayi ve Tic. Inc. In line with the mission and vision of the institution, within the framework of the TS ISO / IEC 27001 Information Security Management System (ISMS) standard, in order to ensure the confidentiality, integrity and accessibility of information, it undertakes the following issues; By determining the information security targets and activities, it plans, implements and controls the ISMS and ensures the continuous improvement of the system;

*Defines how the activities carried out meet the legislation, contract, standard and business requirements; · Defines how it meets the requirements of the Personal Data Protection Law (KVKK);
· Conducts ISMS studies in an integrated manner together with other management systems established within it;
· Determines duties, roles, responsibilities and necessary resources within the scope of ISMS; · Determines confidentiality, integrity and accessibility criteria and makes an inventory of information assets;
· Identifies and assesses existing and potential risks and deploys appropriate risk handling options to manage information security;
· Makes business continuity plans, implements these plans and ensures continuous improvement of the process;
· Develops solutions by following up-to-date technologies and innovations in information security;
· Takes the necessary measures to ensure that all stakeholders comply with the issues determined regarding information security;
· Ensures the announcement, availability, awareness and implementation of this policy;
· Initiates and follows the relevant processes in case of violation of this policy.