Information must be given an adequate level of protection based on classification guidelines (according to its value, legal requirements, sensitivity and criticality).
Information Security takes into account compliance with current legislation and contractual requirements.
Security measures must be implemented with a risk management oriented approach, aiming at and complying with security requirements in all three dimensions (confidentiality, integrity, availability)
Information Security is the responsibility of all nettaro personnel, who must be trained and made aware of the need to satisfactorily fulfil their responsibilities
All company personnel must maintain the confidentiality of information to which they may have access, as well as the obligation to comply with the security standards implemented and the controls establishes
Management establishes the necessary for the effective maintenance of the Information Security Management System
nettaro’s Information Security is periodically evaluated and reviewed to contribute to the minimisation of risks and continuous improvement of the security process, and audits are carried out to guarantee the effectiveness of the Information Security Management System