Data Protection & Legal
Information Security Policy
Our ISO 27001 Information Security Management System (ISMS) scope policy
Last updated: 01.10.2026
In the field of custom software development, and in the context of compliance with legal requirements and its business activities, our organisation is committed to meeting the requirements for protecting the confidentiality, integrity and availability of all physical and electronic information assets. ISMS requirements are implemented in line with our ISMS objectives.
Our ISO 27001 ISMS scope policy
In accordance with the requirements of the standard, our organisation has established, implements and maintains an information security management system, including the necessary processes and their interactions. The scope of the ISMS is continually improved. To this end, we are committed to:
- ensuring that the ISMS is documented, certified and continually improved so as to meet the requirements of ISO 27001,
- continually raising our staff’s ISMS awareness,
- identifying, assessing and controlling the relevant risks within the framework of our strategic business plans, ISMS objectives and risk and opportunity management,
- complying with all legislation and contracts relating to the ISMS,
- monitoring and managing risks to information assets,
- ensuring the confidentiality of our stakeholders’ information assets,
- ensuring that externally provided processes, products and services are controlled.
Protection of special categories of personal data
Law No. 6698 on the Protection of Personal Data designates data relating to race, ethnic origin, political opinion, philosophical belief, religion, sect or other beliefs, appearance and dress, membership of associations, foundations or trade unions, health, sexual life, criminal convictions and security measures, as well as biometric and genetic data, as “special categories of personal data”, and attaches particular importance to them because of the risk that, if processed unlawfully, they may cause harm to individuals or lead to discrimination.
Our organisation treats the protection of lawfully processed special categories of personal data with great care; it diligently applies the technical and administrative measures taken to protect personal data with respect to special categories of data and ensures that the necessary audits are carried out.
In order to be an exemplary organisation in our sector in terms of information security, we are committed to continuous improvement in line with our ISMS objectives and to meeting sustainable ISMS requirements.
General Manager – 03.11.2023