CYBERSECURITY
POLICY

 

APEIROO LABS, S.L. is a cybersecurity company with more than 20 years of experience, whose mission is to prevent and manage risks for individuals and organizations through the protection of their most important asset: information.

APEIROO LABS, S.L. conscious that the security of information relative to our clients is a high-value resource, has established an Information Security Management System in accordance with the requirements of the UNE-ISO/IEC 27001:2022 standard to guarantee the continuity of information systems, minimize risks of damage, and ensure the fulfillment of the set objective, which is none other than the necessary framework for action to protect information resources against threats, internal or external, deliberate or accidental, in order to ensure compliance with the confidentiality, integrity and availability of information. Likewise, all necessary measures will be implemented to comply with applicable security regulations concerning computer policy, the security of buildings and facilities, and the behavior of employees and third parties associated with APEIROO LABS, S.L. in the use of information systems.

 

At APEIROO LABS, S.L. we are committed to Quality of service, and for this reason, we have established a Quality Management System in accordance with the requirements of the UNE-ISO/IEC 9001:2015 and UNE-ISO/IEC 20000-1:2018 standards to achieve maximum knowledge of our services and, thus, be able to offer rigor in recommendations, agility in times, flexibility in approaches, and total commitment to our clients. We seek excellence in all our services by offering the implementation of advanced systems with custom solutions according to the needs of our clients.

APEIROO LABS, S.L. establishes the following guidelines as its Security and Quality Policy: las siguientes directrices:

  • Provide workers with the skills and knowledge necessary for the proper performance of their duties and promote awareness and training in information security.
  • Maintain a commitment to the continuous improvement of processes, procedures, products, and services through the use of quality indicators.
  • Use standard procedures, methodologies, and work tools and perform internal audits to ensure their correct utilization.

  • Keep the planning of all projects updated and perform the necessary monitoring and control to serve as a reference framework and ensure the fulfillment of established objectives in time, cost, and quality.

  • Identify and control project risks and implement mitigation or contingency measures.

  • Guarantee the correct implementation of the requirements agreed upon with the client and manage any changes in a controlled manner.

  • Analyze the different solution alternatives and select, design, and implement the solution that best fits the required functionality.

  • Ensure the availability of information systems, both in the services offered to clients and in internal management.

  • Guarantee and validate with the client that the system fulfills the expected functionality.

  • Ensure data confidentiality.

  • Avoid undue alterations in the information.

  • Control all changes made to project deliverables and ensure the correct upload of developments to the client’s production environments.

  • Comply with current legislation regarding information systems, as well as all applicable requirements.

This Policy is understood, implemented, and kept up to date at all levels of the organization and has the full commitment and support of the Management of APEIROO LABS, S.L.