Hakkari University

Information Processing Department

Information Security Policy

Information Security Policy

Hakkari University, within the scope of the TS EN ISO/IEC 27001:2022 Information Security Management System, is committed to protecting the confidentiality, integrity and availability of information assets while ensuring compliance with applicable legislation, risk management, business continuity, awareness and continuous improvement.

In accordance with the TS EN ISO/IEC 27001:2022 Information Security Management System, Hakkari University commits to:

  • Process, store and transfer personal data in compliance with Law No. 6698 on the Protection of Personal Data, and securely destroy such data in accordance with the applicable legislation when the reasons requiring its processing no longer exist.
  • Fulfil information security requirements arising from national, international and sectoral regulations, applicable legislation and standards, contractual obligations, and institutional responsibilities towards internal and external stakeholders.
  • Ensure secure access to the information assets of the University and its stakeholders.
  • Protect the confidentiality, integrity and availability of University information and information assets.
  • Provide the necessary resources to reduce information security risks.
  • Identify, assess and manage risks that may affect the information assets of the University and its stakeholders.
  • Protect the reliability and institutional reputation of the University.
  • Apply necessary measures and sanctions in the event of an information security breach and establish the organizational structure, resources and infrastructure required to ensure that incidents can be reported and appropriate actions can be taken as quickly as possible.
  • Ensure business continuity and sustainability.
  • Provide training and awareness activities that improve competencies in order to increase information security awareness.
  • Take suppliers’ information security performance into consideration during supplier selection and evaluation processes.
  • Conduct internal and external audits to ensure compliance with and continuous improvement of the TS EN ISO/IEC 27001 Information Security Management System, and evaluate audit results within management review meetings.

Hakkari University is committed to continuously improving its information security practices and maintaining the confidentiality, integrity and availability of its information assets.