Bigs Bilişim Information Security Policy

Bigs Bilişim Ltd. Şti. operates in the information technology industry from its office located at Akçaburgaz Mah. 1593. Sokak No:6, Esenyurt, Istanbul, Türkiye.

As an IT services, cloud operations and managed infrastructure company, Bigs Bilişim is committed to protecting the confidentiality, integrity and availability of all physical and digital information assets.

This Information Security Policy defines our approach to protecting company data, customer information, business systems, operational processes and technology assets.

Our Information Security Commitment

Bigs Bilişim management is committed to maintaining a secure, reliable and compliant working environment. Information security is managed in alignment with our business objectives, legal obligations, customer expectations and operational requirements.

Our goal is to reduce information security risks to acceptable levels while protecting business continuity, service quality, commercial reputation and customer trust.

Information Security Management System

Bigs Bilişim manages information security through an Information Security Management System (ISMS). The ISMS provides a structured framework for identifying, assessing, managing and monitoring information security risks.

The ISMS is aligned with the company’s strategic business plan and risk management approach. It supports the protection of information assets and helps ensure that security controls remain effective and relevant.

Risk Management and Security Controls

Information security risks are identified, assessed and controlled through a formal risk management process. Risk assessments, applicability statements and risk treatment plans are used to define how information-related risks are managed.

The Information Security Manager and IT Manager are responsible for managing the risk treatment process and ensuring that appropriate controls are implemented. Additional risk assessments may be performed when required for specific systems, projects, services or customer environments.

Key Security Areas

Bigs Bilişim focuses on the following key information security areas:

  • Business continuity and contingency planning
  • Data backup and recovery procedures
  • Protection against malware, viruses and unauthorized access
  • Access control and identity management
  • Information security incident reporting and response
  • Protection of customer and company information assets
  • Compliance with legal, contractual and operational requirements

Employee and Third-Party Responsibilities

All Bigs Bilişim employees, contractors and relevant external parties are expected to comply with this Information Security Policy and the procedures defined within the ISMS.

Information security is a shared responsibility. Everyone who accesses company systems, customer environments or business information must follow approved security rules, protect sensitive data and report potential security incidents.

Continuous Improvement

Bigs Bilişim continuously reviews, evaluates and improves its Information Security Management System. Security policies, procedures, controls and risk management activities are updated when necessary to address changing business needs, technology environments and threat conditions.

Information Security Governance

Bigs Bilişim has established an Information Security Committee led by senior management. The committee includes the Information Security Manager, IT Manager and relevant administrators.

The committee supports the ISMS framework, reviews information security performance, monitors policy compliance and helps ensure continuous improvement of security practices across the company.

Contact

For questions about this Information Security Policy, please contact Bigs Bilişim at:
[email protected]