Personal Data Protection (KVKK) and ISMS Policy
The Personal Data Protection and Information Security Policy sets out the principles to be followed within and/or by Plastay Kimya Sanayi ve Ticaret A.Ş. when processing personal data, in compliance with Turkish Law No. 6698 on the Protection of Personal Data and the requirements of our Information Security Management System, taking into account the requirements of the ISO 27001 Information Security Management System.
Browse policies
Our commitments
9
The Company commits to acting in accordance with the other policies and procedures that support the implementation of this Personal Data Protection and Information Security Policy.
The main purpose of this policy is to establish the methods and processes required by the Information Security Management System for the processing and protection of personal data by the Company.
This policy covers and applies to all Company activities relating to the personal data it processes and to the Information Security Management System.
We ensure the protection of personal data and the security of corporate information at the highest level at all times, meeting the relevant information security objectives, needs and expectations.
We operate in compliance with Law No. 6698 on the Protection of Personal Data, all other applicable laws and regulations, and relevant international standards.
We strive to ensure the sustained, balanced satisfaction of our employees, suppliers, business partners, the environment and society, working in cooperation with them, and to meet legal requirements including Law No. 6698.
We continuously improve all processes relevant to our success and quality, and our compliance with Information Security Management System requirements, including all laws and regulations binding our organization.
We communicate our Personal Data Protection and Information Security Policy to relevant internal and external parties to ensure they are informed.
This policy may be amended from time to time with board approval, as required by KVKK/ISMS regulations or as deemed necessary by the Company's Data Controller Representative or relevant committee. In the event of any inconsistency between KVKK/ISMS regulations and this policy, KVKK regulations shall prevail.