PERSONAL DATA MANAGEMENT SYSTEM POLICY
PERSONAL DATA MANAGEMENT SYSTEM POLICY
As Arkel Elektrik Elektronik A.Ş, within the scope of TS EN ISO/IEC ISO 27701 Personal Data Management System;
- Ensuring compliance with Law No. 6698 on the Protection of Personal Data and related regulations in the processes of processing, storing, transferring, and disposal of personal data,
- Ensuring compliance with data protection provisions included in contracts between Arkel and its subcontractors, suppliers, customers, and other third parties,
- Managing personal data security in line with Arkel’s purpose and activities,
- Implementing technical and administrative security measures in accordance with the relevant clauses of ISO/IEC 27001 Information Security Management System and ISO/IEC 27701 Personal Data Management System standards,
- Ensuring that personal data is processed lawfully, fairly, and for specific, explicit, and legitimate purposes,
- Ensuring that processed data is accurate and kept up to date, and that it is relevant, limited, and proportionate to the purposes for which it is processed,
- Ensuring that data whose retention period has expired is disposed of through secure deletion and destruction methods,
- Evaluating the processing of personal data in terms of confidentiality risks and implementing necessary corrective/preventive/detective measures,
- Ensuring that all employees are regularly informed about the processing and security of personal data and that their awareness is increased,
- Monitoring the performance of the personal data security management system and continuously improving it,
As Arkel Elektrik Elektronik A.Ş, we hereby commit.
Top Management