The implementation of these activities is related to the management of information which is one of the key assets of the Company. The information security policy of the Company sets goals and objectives in the field of information security, which guide the Company in its activities. As part of the overall management development, the Company implements the information security management system (hereinafter — “ISMS”) which complies with the international standard ISO/IEC 27001: 2013, requirements of the legislation of Ukraine, regulatory and contractual obligations of the Company in terms of information security.
In accordance with established procedures in the field of risk management, we carry out regular assessment of information security risks. It takes into account the probability of threats to information security and the degree of their impact on business processes, financial condition and business reputation of the Company.