Information Security Policy
Introduction
The Top Management of NEXT2U SRL recognizes that information security is fundamental to the company's success and reputation. Customer data, analysis results, suggested addresses, and investigation methods (statistical analysis algorithms) constitute information whose value represents a corporate asset — both ours and our customers'.
Policy
To this end, Top Management is committed to:
-
Protecting the confidentiality, integrity, and availability of information
-
Implementing and maintaining an Information Security Management System (ISMS) compliant with the UNI CEI EN ISO/IEC 27001:2024 standard
-
Setting security objectives for the confidentiality, integrity, and availability of information
-
Ensuring that all employees are aware of their responsibilities regarding information security
-
Providing the resources necessary for the implementation and maintenance of the ISMS
-
Continually improving the ISMS
Security Objectives
The specific security objectives include:
-
Preserving the confidentiality of the data provided by the customer
-
Ensuring the integrity of the information provided by the customer, as well as the information relating to the data-processing procedures we use to carry out our analyses
-
Ensuring the availability of such information to the persons authorized to manage and use it
Commitment to Compliance
Top Management and all employees are committed to complying with all the requirements set out in the UNI CEI EN ISO/IEC 27001:2024 standard. Top Management is committed to exercising leadership in accordance with the provisions of that standard.
Continual Improvement
Top Management is committed to continually improving the ISMS through:
-
Periodic review of the ISMS
-
The identification and management of information security risks
-
The implementation of corrective and preventive actions
-
The training and awareness of staff and collaborators on information security
-
Ongoing monitoring carried out through the regular scheduling of internal audits and periodic management reviews
Conclusion
Top Management is convinced that this information security policy is fundamental to the company's success and reputation. We are committed to providing a safe and secure environment for our customers' information and to continually improving our ISMS.
The Top Management, 30.05.2026