INFORMATION SECURITY POLICY

To successfully implement the concept of our vision: "To be leaders in the business segments we serve, contributing much more than competitors to the development and success of our clients", we consider "information" as a corporate asset that needs to be managed in accordance with modern international standards.

In line with our corporate goals and strategies, we strive to ensure the information security of all operations at a level that meets the requirements of the business. Based on this, our company and all its employees undertake to follow the following principles:

  • Maintain the confidentiality of information by providing personnel with access to it, in accordance with the authority and responsibilities of that personnel.

  • Prevent unauthorized changes to information in order to protect its integrity and ensure the ability to detect unauthorized changes.

  • Ensure the availability of information in accordance with the requirements of operations and business processes.

  • Assess the risks associated with information security, take control of these risks, and develop risk management programs to ensure continual improvement and improvement of our information systems.

  • Comply with all legal regulations and laws related to information, as well as comply with the relevant principles of the Borusan Cat Kazakhstan group of companies.

  • Ensure information security awareness and competence among our employees and suppliers and ensure that their operations comply with our corporate policies.

  • Handle information security incidents in accordance with the ethical principles of our company.

  • Use modern technologies to maintain the reliability, correctness and relevance of information and IT data, to ensure that the right decisions and actions are taken to manage the company and business.

  • Ensure the continuity of our information infrastructure in order to meet the requirements and requests of our clients, as well as international standards.

  • Do whatever is necessary to protect the confidentiality of information, especially customer and personal information, with appropriate security measures, including policies, processes, procedures and best practices.

  • Do not provide access to information without a corresponding request from the owner of this information or the requirements of legal norms and legislation.

OUR SAFETY IS OUR REPUTATION!


Best regards,
General Director of IE Borusan Makina Kazakhstan LLP Anton Starun