Information Security and
Management System Policy

 

As Borusan Holdings, we report the value we create for our stakeholders, our performance and our environmental impact within the principles of accountability and transparency. Therefore, “information” is our asset that must be protected at an appropriate level for the continuation of our commercial success and as required by our understanding of social responsibility. With our ISO 27001 compliant Information Security Management System, we aim to protect the confidentiality, integrity and accessibility of our important information assets.

Borusan Holding Basic Business Principles and Ethical Rules constitute the building blocks of our Information Security Management System:

  • Borusan Group values ​​integrity, transparency and high business ethics above all else in all its activities. We ensure that the information we process is complete, accurate, processed within authority and reliable. In order to ensure the principle of transparency, we ensure that information is accessible to all interested parties when needed.
  • Borusan Group terminates its relationship with the relevant party in case this trust environment is damaged or terminated and cannot be regained in any business relationship. We evaluate our information security risks and implement the necessary measures to protect the trust of our stakeholders.
  • As one of the most reliable and respected organizations in Turkey, Borusan Group does not engage in any behavior that would undermine mutual trust in business relations, including against its business partners, employees, suppliers, competitors, the environment, society and humanity. We create and implement information security policies. We regularly review, audit and continuously improve compliance with relevant legislation, contract terms and our policies.
  • Borusan Group’s high performance, efficiency and profitability in the areas it operates in are not only the commercial success of our Group, but also its tangible contribution to the country’s economy. We protect our reputation, efficiency and profitability by taking the necessary measures to prevent information security breaches and cyber attacks.
  • Borusan Group is a community where ethical, reliable and good people work. Borusan Group employees are responsible for living the corporate values ​​with their behaviors and being role models. We create information security awareness in our employees with continuous training, campaigns and tests and ensure that they are aware of their responsibilities.
  • Our primary responsibility is to act in accordance with our vision, add value to all our business partners and be an exemplary organization. This ensures that we are a trusted institution with our highly qualified, ethical employees and that our customers feel privileged to work with us. We keep the competence level of our employees involved in information security management at the highest appropriate level, taking into account current technologies and conditions.
  • We protect our personal differences, which we see as a wealth. On the other hand, as Borusan employees, we also adopt and live the corporate culture, values ​​and behavioral norms that will guide us towards a common goal. We ensure the protection of personal differences by ensuring the security of personal data.

The Information Security Management System supports the sustainability strategy focus areas of Borusan Group’s “Inspiration for the Future” approach titled climate – people – innovation. While increasing the number of innovative ideas in our ecosystem and developing products and services that create environmental and social benefits with digitalization and innovation perspectives in the industry, we evaluate and manage the security risks that new technologies may create.