Communication of the Information Security Policy
Histocell, S.L., in line with the Sustainable Development Goals (SDGs) defined by the United Nations, expresses its firm commitment to ensure:
- Protection of personal data.
- Preservation of the confidentiality, integrity and availability of the information managed.
Our purpose is to deploy the necessary technical, human, material and organizational resources:
- To ensure proper information security management.
- To reduce the possibility of materialized threats.
- And, although the existence of security incidents is inevitable, to detect them, to deal with them in time; to minimize a serious impact on the information managed or the services provided; and to enable the recovery of the affected information.
We strive to comply with:
- GDPR/LOPDGDD (Personal Data Protection Regulation).
- National Security Scheme (ENS) and ISO 27001.
- Our customers’ requirements.
- Our own information security standards, based on stakeholder expectations.
We monitor our supply chain, ensuring that their commitments are aligned with ours.
We manage information security in the development of our digital products and support services.
In order to apply the principles of continuous improvement in our information security management:
- We conduct systematic reviews.
- We apply preventive measures.
- We train and raise awareness among all members of the organization.
This statement is based on the Information Security Policy document and the LOPDGDD Policy for personnel, with greater detail on the aspects mentioned above.
Approved by the Board of Directors on September 18, 2024.