PT Fortuna Integritas Mandiri recognizes that information is a vital asset in the company’s business operations. We are therefore fully committed to protecting information through the implementation of an Information Security Management System (ISMS) aligned with the international standard ISO/IEC 27001:2022.
This commitment is realized through:
- Ensuring Confidentiality, Integrity, and Availability: Managing information security to protect it from unauthorized access, unauthorized modification, and disruptions that could hinder the company’s operations.
- Demonstrating Top Management Leadership and Commitment: Ensuring the ISMS is implemented in accordance with regulatory requirements across all of the company’s business processes.
- Proactively Managing Risk: Conducting regular assessments and managing information security risks based on the vulnerabilities and threats present in each asset and process.
- Building Awareness and Competency: Continuously improving information security awareness, knowledge, and skills among all employees and relevant external parties.
- Ensuring Compliance: Meeting all applicable legal and regulatory requirements in Indonesia, as well as the international ISO/IEC 27001 standard.
- Upholding Accountability and Responsibility: Requiring all personnel to report suspicious activity — including potential money laundering or threats to information security — to the CISO or ISMS Team, with leadership at all levels responsible for monitoring the effectiveness of this policy’s implementation.
- Committing to Continuous Improvement: Making both immediate and planned improvements to the suitability, adequacy, and effectiveness of the ISMS, and reviewing this policy at least once a year.