Farba Information Security Policy

With the implementation of this policy, as Farba Otomotiv A.Ş Senior Management, we aim and undertake to fulfill the following basic principles necessary for the protection, continuity and sustainability of information assets in terms of confidentiality, integrity and accessibility while realizing the vision of "to offer innovative technology and products with high added value to the global market" with the Information Security Management System to be established as one of the requirements for the continuation and development of sustainable competitiveness.

  • Providing all necessary resources (infrastructure, process and personnel) for the Information Security Management System,
  • Ensuring working in compliance with the requirements determined by the laws of the Republic of Turkey, regulations, circulars, customer contracts and the legal legislation required by the business,
  • Ensuring the confidentiality, integrity and accessibility of information belonging to real persons, our organization or our stakeholders (Customer, Supplier, Government Institutions) in all cases,
  • Carrying out the risk assessment processes regarding the increasing threats to the confidentiality, integrity and accessibility of information assets, providing the necessary support and contribution to eliminate the identified risks or reduce them to acceptable levels,
  • Ensuring that information is accessible only to authorized persons in accordance with the “need-to-know” principle,
  • To provide the necessary support for the plans to be made regarding the development of technical and behavioral competencies and the regular provision of trainings necessary for them to contribute to the effectiveness of the ISMS in order to increase the awareness of information security of all employees,
  • Providing the necessary support for the studies to be carried out to detect, notify, close and prevent the recurrence of all real or suspected violations of information security incidents,
  • Providing all necessary resources (infrastructure, equipment, personnel) to ensure continuous access to information at planned levels by ensuring business continuity,
  • Ensuring the achievement of the targeted outputs of the Information Security Management System and supporting its continuous improvement

We will work to become a leading company in Information Security in our sector by managing ISO 27001 Information Security Management System in an integrated manner with all other management systems and Business Processes implemented within the scope of our institution.