Information Security Statement
- GIG-Jordan ensures that appropriate controls and countermeasures are put in place to protect corporate and client data, as well as the information technology systems, services, and equipment of GIG-Jordan.
- GIG-Jordan is committed to protecting its information assets, personnel, intellectual property, computer systems, data, and equipment from all threats—whether internal or external, deliberate or accidental—in a cost-effective manner. This shall be achieved with minimum inconvenience to authorized users and against threats to the level of service required by GIG-Jordan to conduct its business.
- GIG-Jordan shall adopt ISO 27001 Information Security Management System (ISMS) as a tool to implement a formal system for protecting the confidentiality, integrity, and availability of information.
- GIG-Jordan is committed to complying with regulatory and legislative requirements.
- GIG-Jordan is committed to satisfying the expectations and requirements of interested parties and to providing the necessary resources to achieve this.
- Information security risks shall be managed based on GIG-Jordan’s approved risk management methodology.
- GIG-Jordan is committed to treating and resolving security incidents and suspected vulnerabilities according to their respective nature.
- Information security objectives shall be defined based on the implemented risk assessment and shall be monitored and reviewed by the Information Security Management System Steering Committee.
- GIG-Jordan is committed to encouraging information security improvements by engaging with its personnel, providing them with information security training and awareness, and enhancing their competencies.
- GIG-Jordan is committed to continually reviewing this policy and its information security performance to ensure continuous improvement over time.