Information Security and Sustainability - kentkart

Information Security and Sustainability

Home Company Information Security and Sustainability

Sustainability

Sustainable development is defined by the World Business Council for Sustainable Development (WBCSD) as “forms of progress that meet the needs of the present without compromising the ability of future generations to meet their needs.” It is a comprehensive approach which, balancing the needs of the business world and human life with the sustainability of natural resources, aims to form a plan today in harmony with the future in terms of its economic, environmental, and social aspects.

Being a very effective strategic key to create competitive differentiation and continue innovation, the concept of sustainability is one of the main topics of numerous companies and organizations from the business world to NGOs.

As in all other sectors, in the field of transportation, management of sustainability and performance-enhancing studies are carried through adopting policies of quality, and paying close attention to information security, job and employment security, environment and energy, customer satisfaction, corporate social responsibility, human resources, informing the supplier and the public as well as through documents supporting such policies along with a thoughtful corporate management concept.

kentkart has for many years internalized a distinct approach for sustainability and its management by earning 9001 Quality Management System, 14001 Environmental Management System, and 27001 Information Security Management System certifications. Our company never stops advancing in this area.

Within this scope, the purpose of kentkart is to protect and preserve the present natural resources and values throughout its systems and applications and pass them onto future generations. Smart card technologies developed by kentkart have reduced paper consumption in public transportation to the minimum and the “Internet Recharge” feature of our application has eliminated the use of paper tickets and receipts. Ending cash exchange within vehicles has resulted in reducing waiting time thus, contributing to fuel economy. Strongly supporting environmental, economic, and cultural sustainability with all of its applications, kentkart has shown its willful determination in this context by earning the right to be a “Member of Sustainable Public Transport” in the Dubai UITP World Congress upon signing the related declaration.

Information Security Policy

As part of its information security policy, kentkart is devoted to fulfilling the conditions of the information security management system; continuing to improve its effectiveness and perpetual development; meeting information security needs, and considering existing and potential risks by taking into account legal terms and customer conditions. The risk management framework covers defining information security risks, evaluation, and processing. Risk evaluation, applicability declaration, and risk processing plan define how information security risks are managed. The company has a special department responsible for the implementation of this plan.

kentkart declares that the management supports enabling application and control of the “Information Security Policy” and execution of necessary sanctions in case of security breaches. Everybody who uses information processing infrastructure and who has access to information sources must provide company information in private and electronic correspondence and in information exchange with third parties, and must back-up the processed information according to the level of importance; must take security measures determined according to risk levels; must report cases of information security breaches and inform concerned units; and must take measures to avoid such breaches. In-company information sources (announcements, documents, etc.) cannot be transferred to unauthorized third parties. Company informatics sources shall not be used for activities against Turkish Republic Laws and related regulations. All personnel of the company, as well as external parties defined by ISMS, are obliged to adhere to ISMS, its procedures, and directives.