POLICY OF QUALITY, ENVIRONMENT AND SECURITY OF THE INFORMATION

HABBER TEC, an innovative organisation with more than 20 years of experience in the sector and dedicated to the Design, Development, Sale and Marketing of Software, has decided to implement an Integrated Quality, Environment and Information Security Management System, based on the ISO 9001: 2015, ISO 14001: 2015 and ISO 27001: 2013 standards, to improve the service it provides to its customers, improve environmental performance and efficiency and preserve the confidentiality, integrity and availability of information, as well as protect it from a wide range of threats and aimed at ensuring the continuity of business lines, minimising damage and maximising the return on investment and business opportunities.

HABBER TEC’s Management approaches the System as a way of organising the operation of the organisation, managing environmental aspects, emergencies and legal risks, based on basic pillars such as the Quality of its products, Sustainability, Customer Satisfaction and the continuous improvement of the System’s efficiency. We are also aware that information is an asset that is highly valuable for the organisation and therefore requires adequate protection.

To this end, HABBER TEC’s Integrated Management System is based on the following principles and commitments commitments:

  • Quality, Environment and Information Security, where its improvement is the responsibility of all members of the organisation, starting from the Top Management.
  • Quality, Sustainability and Information Security are achieved by planning, executing, reviewing and improving the Management System, keeping in mind at all times the context of the organisation, both internal and external.
  • Quality is oriented towards the Satisfaction of all our customers (and interested parties), through the commitment of the entire organisation to meet their needs and requirements, as well as to comply with the applicable information security and environmental legislation and other requirements to which our organisation subscribes.
  • Continually intensify our environmental management to achieve improvements in the overall performance of the company, using a life cycle analysis approach.
  • Establish and regularly review quality, environmental and information security objectives in line with the commitments made in this statement. For the effective implementation of these principles, the support of both management and staff is absolutely necessary.
  • Identify and control the organisation’s environmental aspects and risks, in such a way that we establish a preventive approach.
  • To train and raise awareness of the organisation’s personnel, in terms of quality, environmental performance and information security, establishing appropriate and adapted training plans, as well as providing the necessary resources for the proper functioning of the integrated system.
  • Quality and our sector lead us to pay maximum attention to technological evolution and to the possible improvements that new technologies may make available to us.
  • Quality, the Environment and Information Security are based on the Continuous Improvement of both the production processes and service provision, as well as the efficiency of the system, in which preventing errors is a fundamental aspect.
  • The protection of personal data and the privacy of individuals.
  • The safeguarding of the organisation’s records.
  • The protection of intellectual property rights.
  • Documentation of the information security policy.
  • Assigning security responsibilities.
  • Recording of security incidents.
  • Business continuity management, developing continuity plans in accordance with internationally recognised methodologies.
  • Management of security-related changes that may occur in the company.
  • Prevention and detection of viruses and other malicious software, through the development of specific policies and the establishment of contractual agreements with specialised organisations.
  • Establishing the consequences of breaches of security policy, which will be reflected in contracts signed with stakeholders, suppliers and subcontractors.
  • Acting at all times within the strictest professional ethics.

The effective application of these principles of Quality, Environment and Information Security requires the participation and collaboration of everyone, both the management team and the staff, for which reason this Policy is disseminated to all the organisation’s personnel for their knowledge and understanding, and is reviewed at least once a year for its adaptation, and is available to the general public.

 

Madrid, 20 of september of 2023.