{"id":21830,"date":"2023-03-08T10:54:36","date_gmt":"2023-03-08T10:54:36","guid":{"rendered":"https:\/\/crigroup.com\/?page_id=21830"},"modified":"2023-03-08T11:10:41","modified_gmt":"2023-03-08T11:10:41","slug":"information-security-policy","status":"publish","type":"page","link":"https:\/\/crigroup.com\/ar\/information-security-policy\/","title":{"rendered":"INFORMATION SECURITY POLICY"},"content":{"rendered":"
This Information Security Policy ensures CRI Group\u2019s Business Continuity and minimizes business damage by preventing and minimizing the impact of security incidents. In deploying the Information Security Management System (ISMS), which is compliant with ISO 27001:2013 as well as with applicable legal and regulatory requirements like Data privacy law \u00a0DIFC Law No. 1 of 2007\u00a0 and General Data Protection Regulation 2016\/679 and PDPA 2012 Singapore by protecting and limiting the access to Information Assets to only those with authorized access, ensuring business continuity and implementing controls to prevent and minimize the impact of security incidents. The Top Management aims to protect CRI Group\u2019s Information Assets from all threats, whether internal or external, deliberate or accidental to mitigate the risks of incidents to an acceptable.<\/p>\n
CRI Group\u2019s Information Security Policy ensures that:<\/p>\n
Information takes many forms and includes data stored on computers, transmitted across networks, printed out or written on paper, sent by fax, stored on USB, spoken over call or in conversation. The GISO has direct responsibility for maintaining Information Security Policy and providing advice and guidance on its implementation.\u00a0 Guidelines on implementation of this Policy is available in Information Security Management Policy. It is the responsibility of all employees and third parties working with CRI Group to comply with the Information Security Policy at all times and report weaknesses or incidents that contravene or may contravene policy to the GISO. The management is directly responsible for implementing Information Security Policy, providing resources, supporting procedures within their business areas, and for adherence to the policy by their staff members.
\n\u00a0<\/p>\n
<\/p>","protected":false},"excerpt":{"rendered":"
OBJECTIVE This Information Security Policy ensures CRI Group\u2019s Business Continuity and minimizes business damage by preventing and minimizing the impact of security incidents. In deploying the Information Security Management System (ISMS), which is compliant with ISO 27001:2013 as well as with applicable legal and regulatory requirements like Data privacy law \u00a0DIFC Law No. 1 of […]<\/p>","protected":false},"author":1,"featured_media":12406,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":""},"class_list":["post-21830","page","type-page","status-publish","has-post-thumbnail","hentry"],"yoast_head":"\n\n\n\n\n\n\n\n\n\n\n\n\n\t\n\t\n\n\n\n\t\n