The Management of WISE aims to achieve a leading position in the sector of:
Provision and management of work teams in the telecommunications sector, in areas such as Administration, Finance, Procurement, Technical Support, Sales Support, Digital Sales Support, Network Operation and Maintenance, In-Home Services, and Workplace Maintenance Services.
For this reason, and recognizing the importance and current need for companies to adopt an integrated management system aligned with ISO 9001 and ISO 27001 in their latest versions, WISE is committed to the proper management and control of the processes and activities it carries out.
Regardless of other factors, and as a key tool for achieving this leadership, maintaining the Integrated System is essential to optimize the management of both material and human resources and to ensure the effectiveness of our services.
WISE constantly seeks the continuous improvement of the System in order to provide our clients with services backed by the highest standards of reliability.
The Integrated Management System must meet the needs and expectations of clients, in addition to addressing our own internal needs and interests.
The need to deliver highly reliable services to our clients has led WISE to establish, as a top priority and unwavering goal, the provision of services with the highest level of assurance.
The Integrated Management System implemented at WISDOM CONSULTING must comply with the requirements established by ISO 9001 and ISO 27001, as well as with applicable legal and regulatory requirements, as outlined in the Quality and Security Manual and documented procedures.
The Quality and Security Manual and all applicable procedures are mandatory for all WISE personnel; therefore, all employees are required to know and comply with them.
There is a firm commitment to maintaining a security system that protects data, personnel, and infrastructure from misuse, unauthorized intrusions, theft, or the improper use of information, among other risks. To this end, the company will provide all necessary technical, security, IT, and human resources.
Additionally, the organization defines the concepts, principles, responsibilities, and objectives regarding Information Security, ensuring that the company maintains the necessary freedom of action.
Principles:
-
Integration: Global Security is an integrated process aligned with the business and involves the entire organization.
-
Profitability: Security is driven by business criteria, balancing cost and investment. Centralized criteria are established to leverage existing synergies, reducing overall costs and improving the efficiency of security efforts.
-
Continuity: Security must be present throughout its entire lifecycle: protection, prevention, detection, response, and recovery.
-
Adaptation: The resources used must be tailored to the business environment. Factors such as market competition, social, political, and economic instability, and hacking (whether amateur or professional) can all impact business operations and security levels.
The company’s security committee will also analyze risks and vulnerabilities that may affect business continuity and will propose standards, resources, and appropriate measures to mitigate these risks, safeguarding the confidentiality, availability, and integrity of information.
All personnel in the organization must take responsibility for maintaining the security of the assets under their control and adhere to the security policies established by WISE.
Objectives:
-
Achieve and maintain the necessary level of security to ensure business continuity, even under adverse conditions.
-
Strengthen integration and mutual support between physical and logical aspects of security.
-
Collaborate in managing other security-related areas, including labor and environmental safety, aligning with Corporate Social Responsibility principles.
-
Establish the corporate security structure as defined by the organization’s decision-making bodies and create effective communication channels among all stakeholders.
-
Comply with official security regulations and other applicable requirements.
-
Develop and implement Security Training and Awareness Plans to enhance staff knowledge.
-
Integrate all departments into a unified security management system that operates under shared criteria, leverages synergies, and ensures consistency in actions and resource use.
All employees of the organization must be aware of and follow the guidelines established in this Security Policy.
The General Director provides adequate and sufficient resources to implement this System and supports this Quality and Security Policy.
The Integrated Management System is reviewed by the General Director as often as necessary, and at least once per year, to ensure its continued effectiveness. These reviews generate and store official records.
The General Director and all employees are confident that this approach strengthens both the culture of Quality and Security and the company’s efforts in training and risk prevention.
This policy has been developed as a reference framework for setting company objectives and is publicly available.
Signed,
Management
Ángel Sotillos
Date: 19/05/2025