Fintrak Software is committed to maintaining and improving information security, quality management, service management, and business continuity processes by adopting an integrated management system. This provides a framework for integration of the ISO 20000:2018. ISO 9001:2015, ISO 27001:2013 and ISO 22301:2019 standards.

The company defines our core values for Integrated Management System as follows:

  • To ensure uninterrupted availability of all key business resources required to support essential (or critical) business activities.
  • To reduce the number of information security and business continuity high-priority risks on Fintrak Software Limited’s risk register.
  • To provide for an orderly and expedited recovery/continuity of critical business processes after a disruptive incident.
  • To endeavor to ensure that all persons employed by us are competent to carry out the specific work tasks by providing all necessary information, instruction, training, and supervision.
  • To reduce or avoid information security breaches and related losses.
  • To Ensure Compliance with Fintrak Software Limited’s Contractual, Regulatory, and Legal requirements and reduce information security-related regulatory sanctions/penalties.
  • To ensure Information collected, held, and used by the organization is appropriately protected and available in line with business requirements.
  • To improve information security culture and consciousness in the organization.
  • To provide training in information security and business continuity for key resources
  • Create awareness to all staff on the needs and responsibilities of Information Security Management, Quality Management, IT Service Management & Business Continuity Management.
  • To ensure that the Confidentiality, Integrity and Availability of information is maintained throughout business functions and processes.
  • To ensure information is only accessible to authorized persons from within or outside the company and minimize damage by preventing and reducing the impact of security incidents.
  • To optimize our business processes to always strive for zero defect and no waste attitude.
  • To satisfy the requirements of the services provided.
  • To ensure continual improvement of our Information Security Management, Quality Management, IT Service Management & Business Continuity Management.

The Integrated Management System policy, objectives, and targets will be reviewed annually (or sooner if necessary) by Top Management. This policy statement is communicated to all employees and persons working for or on behalf of the company and will be made available to the public, stakeholders, and any other interested parties upon request.

 

Signed,
Management.