Information Security Policy
PISTIOLIS – TRIANTAFYLLOS & ASSOCIATES LAW FIRM – ANDERSEN LEGAL implements and maintains an Information Security Management System (ISMS) in accordance with the requirements of ISO/IEC 27001:2022.
The firm is committed to:
-
Protecting the confidentiality, integrity, and availability of information assets.
-
Ensuring the timely identification of, and effective response to, information security incidents or potential breaches.
-
Establishing and maintaining information security policies and objectives aligned with the firm’s strategic direction.
-
Protecting the firm’s investment in information and communication technologies.
-
Complying with applicable Greek and European legislation, including laws relating to personal data protection, confidentiality of communications, and intellectual property rights.
-
Continuously improving the effectiveness of the Information Security Management System.
-
Defining business requirements related to the availability of information systems.
-
Identifying relevant interested parties and internal and external issues affecting the firm’s operating context.
-
Implementing a structured risk assessment process to identify information security risks, threats, and opportunities.
The Management of PISTIOLIS – TRIANTAFYLLOS & ASSOCIATES LAW FIRM – ANDERSEN LEGAL ensures the availability of adequate resources to support the Information Security Management System, provides appropriate training and knowledge to its personnel, and promotes awareness of information security responsibilities.
Management fully supports the objectives of the Information Security Management System and is committed to its effective implementation.
This English version is provided for information purposes only.
The Information Security Policy is maintained in Greek. To download the document, click here
01 April 2025
Approved by Management