İzmir Ekonomi Üniversitesi
  • TÜRKÇE

  • Systems and Operations Department

    Information Security Management System Policy (ISO 27001)

    İzmir University of Economics supports information systems operations through preventive controls established in accordance with the Information Security Management System, continuously ensuring the availability, integrity, and confidentiality of data and information.

    In accordance with the ISO/IEC 27001 Information Security Management System, our University;

    • Ensures secure access to the information assets of itself and its stakeholders,
    • Protects the confidentiality, integrity, and availability of personal and corporate information in its capacity as Data Controller and Data Processor,
    • Assesses and manages risks that may arise in relation to its own and its stakeholders’ information assets,
    • Protects the institution’s reliability and reputation,
    • Implements necessary sanctions in cases of information security and privacy breaches,
    • Ensures compliance with applicable national, international, or sector-specific regulations, relevant legislation and standards, contractual obligations, and information security requirements arising from institutional responsibilities toward internal and external stakeholders,
    • Reduces the impact of information security and privacy threats on business/service continuity and ensures the continuity and sustainability of operations,
    • Maintains and continuously improves the level of information security and privacy through the established control infrastructure,
    • Provides training to improve competencies and increase awareness of information security and privacy,
    • Conducts activities with all stakeholders to promote information security, personal data protection, and awareness,
    • Establishes the organizational structure, resources, and cybersecurity infrastructure required to address information security and personal data breaches, informs the public when necessary in the event of potential breaches, and implements the required sanctions,
    • Ensures the continuous improvement of the Information Security Management System,

    We hereby undertake these commitments.

    Click here to access the ISO 27001 Certificate.