OUR INFORMATION SECURITY POLICY

The vision of Farklı Yatırım is to become a leading organization in the plastic card sector in Turkey and worldwide, as well as in the development of technologies and new products related to this sector.

In the realization of this vision, security conditions in the production of these products are undoubtedly of great importance, as much as the quality of products and services. We commit to ensuring that the information and data delivered to our company and produced by our company are used, preserved, transported, and destroyed correctly, by the right individuals, at the right time, and in accordance with the rules set by our customers, laws, and certifying bodies, both in Turkey and worldwide, as an organization recognized as an example.

Therefore, physical and information security is an indispensable condition for Farklı Yatırım in the physical environment where it conducts production, its processes, the technologies it uses, and its human resources.

In today's conditions, where the flow and sharing of information are very fast and easy, using and storing information and data securely is one of the fundamental responsibilities of all employees at all levels, starting from the top management of Farklı Yatırım.

To ensure that these responsibilities are fulfilled by all our employees without exception, a Security Guide has been prepared and provided to all our employees from their initial employment.

The rules defined in the Security Guide are not open to interpretation, flexibility, or exceptions because they are requirements of the security standards that we adhere to.

Wireless internet access is strictly prohibited in our company (Wireless).

For the physical security of Farklı Yatırım, a Security Handbook "Physical Security" and a Security Handbook "Logical Security" for Mastercard/Visa Logical standards have been prepared, as well as an Information Security Handbook - ISO 27001 and LS-017 Applicability Statement within the ISO 27001 ISMS (Information Security Management System).

All Handbooks were prepared taking into consideration the legal requirements specified in the list of legal regulations that we commit to complying with, LS-013.

Farklı Yatırım is conscious of the responsibility it undertakes both to its customers, employees, and third parties, and acts accordingly.

Farklı Yatırım conducts a risk analysis for Information Security in accordance with the criteria of confidentiality, integrity, and availability, and identifies and controls risks accordingly.

We expect Farklı Yatırım employees to act in accordance with the company's Security Policy and to give it the necessary importance. Please be aware that disciplinary investigations and legal sanctions may be applied to individuals who attempt to access information and data related to their department and responsibilities, and who endanger information and data.