Information Security As part of the continuous strengthening of its management systems, the Company has initiated the certification process for its Information Security Management System (ISMS), in compliance with the international ISO/IEC 27001 standard.
This initiative is set in a constantly evolving regulatory context, in which Sogin operates in accordance with the NIS 2 Directive (Legislative Decree 138/2024) and with its positioning within the National Cybersecurity Perimeter (PSNC), defined by the Decree-Law n. 105/2019 and by the DPCM of June 15, 2021.
The Information Security Policy, issued by the Corporate Leadership, is disseminated within the organization and made accessible to interested parties through internal and external corporate communication channels. This Policy is periodically reviewed to ensure its constant suitability, adequacy and effectiveness.
The implementation of the ISMS promotes a structured and systematic approach to data protection, which includes:
- The identification of specific objectives;
- The assignment of roles and responsibilities;
- The adoption of appropriate technical and organizational measures.
This commitment represents a strategic element for protecting the Company’s reputation and for strengthening the trust of both internal and external stakeholders.