{"id":1388,"date":"2025-11-10T15:49:10","date_gmt":"2025-11-10T15:49:10","guid":{"rendered":"https:\/\/www.ges-start.com\/?page_id=1388"},"modified":"2025-11-10T15:49:28","modified_gmt":"2025-11-10T15:49:28","slug":"information-security-policy","status":"publish","type":"page","link":"https:\/\/www.ges-start.com\/en\/information-security-policy\/","title":{"rendered":"Information Security Policy"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\"><strong>INFORMATION SECURITY POLICY<\/strong><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Introduction and Scope<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This policy applies to all professionals of GESTART ASSESSORS SL (hereinafter referred to as \u201cGES-START\u201d).<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">GES-START recognizes that information and the systems managing it are strategic and essential assets for the proper development of its professional activity. These assets include technological infrastructure, storage media, software, documentation, and external services that support the company\u2019s operations. Their proper protection is essential to ensure operational continuity, internal efficiency, and the trust of clients, partners, and other stakeholders in the provision of GES-START\u2019s accounting, tax, and labor advisory services.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This Information Security Policy sets out guidelines for the proper management, use, and safeguarding of these assets, with the aim of minimizing risks and ensuring regulatory compliance.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Framework and Principles<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The Information Security Policy establishes a working framework to protect information and the systems that manage it, preventing unauthorized access, misuse, improper disclosure, interruption, modification, or destruction. It also reflects the company\u2019s commitment to information protection and compliance with applicable regulations.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">All guidelines included in this policy form part of the Information Security Management System (ISMS), which GES-START maintains, reviews, and updates at least once a year. This system is designed to comply with the ISO 27001 standard and to guarantee the fundamental principles of confidentiality, integrity, and availability.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Furthermore, this Policy is published on the Intranet and forms part of the mandatory onboarding training that all professionals must complete during their integration process.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>GES-START\u2019s Commitment<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">To ensure compliance with this policy, GES-START commits to:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Implementing and continuously improving the ISMS in accordance with ISO 27001 and applicable regulations.<\/li>\n\n\n\n<li>Ensuring that all professionals understand and apply information security policies, protecting the company\u2019s data.<\/li>\n\n\n\n<li>Ensuring that collaborators and suppliers who access or manage information comply with the established security requirements and are informed of the necessary guidelines.<\/li>\n\n\n\n<li>Clearly defining the roles and responsibilities of the individuals or teams responsible for implementing and maintaining security measures.<\/li>\n\n\n\n<li>Applying appropriate security controls to protect information against risks and incidents, in accordance with business needs and regulatory requirements.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Responsibilities and Control<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">GES-START professionals must comply with security policies, protect information assets, and immediately report any incidents. The Security Officer and the Security Committee oversee the ISMS, ensure its effectiveness, and review the policy at least once a year, ensuring its proper dissemination throughout the organization.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Security Controls<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">GES-START applies technical and organizational measures in areas such as access control, information classification, physical and logical security, vulnerability management, backups, business continuity, and internal training, among other controls, in line with industry best practices.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Communication and Contact<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For any additional information regarding our Information Security Policy or to share suggestions, please contact us at: <strong><a>compliance@rcd.legal<\/a><\/strong>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>INFORMATION SECURITY POLICY Introduction and Scope This policy applies to all professionals of GESTART ASSESSORS SL (hereinafter referred to as \u201cGES-START\u201d). GES-START recognizes that information and the systems managing it are strategic and essential assets for the proper development of its professional activity. These assets include technological infrastructure, storage media, software, documentation, and external services [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_genesis_hide_title":false,"_genesis_hide_breadcrumbs":false,"_genesis_hide_singular_image":false,"_genesis_hide_footer_widgets":false,"_genesis_custom_body_class":"","_genesis_custom_post_class":"","_genesis_layout":"","footnotes":""},"class_list":["post-1388","page","type-page","status-publish","entry"],"_links":{"self":[{"href":"https:\/\/www.ges-start.com\/en\/wp-json\/wp\/v2\/pages\/1388","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.ges-start.com\/en\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.ges-start.com\/en\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.ges-start.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.ges-start.com\/en\/wp-json\/wp\/v2\/comments?post=1388"}],"version-history":[{"count":2,"href":"https:\/\/www.ges-start.com\/en\/wp-json\/wp\/v2\/pages\/1388\/revisions"}],"predecessor-version":[{"id":1390,"href":"https:\/\/www.ges-start.com\/en\/wp-json\/wp\/v2\/pages\/1388\/revisions\/1390"}],"wp:attachment":[{"href":"https:\/\/www.ges-start.com\/en\/wp-json\/wp\/v2\/media?parent=1388"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}