ISMS Policy
- JIB is committed to protect its information assets, personnel, intellectual property, computer systems, data and equipment from all threats, whether internal or external, deliberate or accidental,. This should be achieved with minimum inconvenience to authorized users and against threats to the level of service required by the JIB to conduct its business.
- JIB shall adopt ISO 27001 Information Security Management System (ISMS) as a tool to implement a formal system for protecting the confidentiality, integrity and availability of information.
- JIB is committed to comply with regulatory and legislative requirements.
- JIB is committed to satisfy the expectations and requirements of interested parties, and to provide the necessary resources to achieve this.
- JIB is committed to encouraging information security improvements by engaging with its personnel, providing them with information security training and awareness, and enhancing their competences.
- Information security should be aligned with JIB’s strategic direction and business objectives.
- Information security risks shall be managed based on JIB’s Risk Management Methodology.
- JIB is committed to continually improve its ISMS and information security posture.
- JIB is committed to treat and resolve security incidents and suspected vulnerabilities per their respective nature.
- Objectives relating to information security performance will be set by information security department, monitored by information security manager then reviewed by the CEO.
- JIB will continually review this policy and its information security performance to ensure it improves over time.
- All Managers are directly responsible for implementing this ISMS Policy, and for ensuring staff compliance in their respective departments.
- This policy is available to all JIB personnel and relevant interested parties. All JIB personnel are made aware of its commitment and the contents of this policy.