Български
обратно

Нашата политика за качество и сигурност на информацията

OUR QUALITY POLICY

Our organization adopts as its core principle the provision of reliable, timely, and sustainable services by accurately understanding the needs and expectations of our customers and relevant stakeholders.

By effectively implementing our Quality Management System in line with the ISO 9001:2015 standard, we aim to:

Continuously increase customer satisfaction,

Improve our processes by measuring and monitoring them through performance indicators,

Enhance the effectiveness of our system by evaluating risks and opportunities,

Operate in compliance with all applicable legal and other requirements,

Integrate technological developments and innovations into our processes,

Increase employee participation, develop their competencies, and promote quality awareness,

Support sustainable success by using our resources effectively and efficiently,

Integrate a continuous improvement approach into all our activities.

As senior management, we commit to providing all necessary resources to ensure the effectiveness of the Quality Management System, continuously monitor its performance, and improve it.

OUR INFORMATION SECURITY POLICY

TOBBUND, based on the trust of the institutions and organizations it serves, considers the protection of its information assets as one of its primary responsibilities. Accordingly, information security is addressed as an integral part of all our activities within the framework of the principles of confidentiality, integrity, and availability.

In line with this approach, we:

Implement the necessary technical and administrative measures and provide the required infrastructure to protect customer and stakeholder information,

Act in compliance with the ISO/IEC 27001:2022 standard and applicable legal regulations (including data protection laws),

Regularly assess and manage information security risks at an appropriate level,

Ensure security requirements are considered in software development and system processes,

Restrict and control access to information based on business needs,

Take measures to protect information assets against potential cyber threats,

Monitor information security incidents and respond when necessary,

Conduct regular training to increase employees’ awareness of information security.

Within this scope, we commit to regularly reviewing our information security processes, continuously improving our practices, and ensuring the sustainability of information security.