Our Information Security Policy
With this policy, as the TURKISH RED CRESCENT, in order to manage every risk to our information security and information assets, we commit to;
- Treating corporate information and the data of those we interact with, such as staff, customers (financial data, personal information, etc.), donors, volunteers and people in need, as valuable and critical, and meeting the obligations of the laws on information security,
- Protecting the institution's reliability and reputation,
- Providing the infrastructure and taking the security measures needed so that the IT services our work relies on continue without interruption and personal and private data can be reached only by authorised people,
- Documenting our information security management system to meet the requirements of the ISO/IEC 27001 standard, and continually improving it,
- Complying with all legislation and contracts on information security,
- Managing the risks to information assets systematically,
- Providing training that develops technical and behavioural competences to raise information security awareness.
We hereby commit to the above.