Information security is one of the most important issues for organizations, companies, and individuals today. OSTİM also demonstrates a high level of sensitivity in protecting the information of its members and stakeholders.
Ensuring information security is possible through technological solutions combined with the establishment of a robust security management system. Creating a secure environment regarding the confidentiality, integrity, and availability of information is of strategic importance. The only globally accepted standard in this regard is ISO 27001 Information Security Management System.
Today, the vast majority of business and transactions are carried out in digital environments. OSTİM Organized Industrial Zone Regional Directorate provides services to companies in the region using various hardware and software. Ensuring the continuity of the services provided and protecting the information generated are of great importance.
OSTİM has also accelerated its efforts in information security. Within this scope, employees of OSTİM Organized Industrial Zone Directorate, OSTİM Technical University, Ostim Technopark, and OSTİM Investment Inc. received a one-day training on ISO 27001 Information Security Management System.
During the application process
OSTİM OSB Information and Communication Technologies Directorate has finalized its ISO 27001 certification process and is now in the application phase, aiming to implement its digitized work system in a secure environment with a focus on continuous improvement and adherence to specific standards.
As part of the studies, staff awareness, information classification, and information security measures were reviewed and deficiencies were addressed.
With the ISO 27001 safety management system, continuity can be ensured in a healthy way, not only through technology but also through the work processes implemented by all employees.
The advantages of using the ISO 27001 standard are listed as follows: market differentiation, meeting top management and customer requirements, compliance with legal requirements, employees focused on information security awareness, preparedness for newly emerging threats and vulnerabilities, the ability to identify and address weaknesses, building trust among members and stakeholders, etc.