As part of the ongoing strengthening of its management systems, the Company has obtained the Information Security Management System (ISMS) Certification in compliance with the international standard ISO/IEC 27001, confirming its commitment to protecting information and business procedures.
Achieving this certification is part of a constantly evolving regulatory context, in which Sogin operates in accordance with the NIS 2 (D. Lgs. 138/2024) and its positioning within the National Cyber Security Perimeter (PSNC), defined by the Legislative Decree n. 105/2019 and the DPCM of June 15, 2021.
The Information Security Policy, issued by the Company’s top management, is disseminated throughout the organization and made accessible to interested parties through internal and external corporate communication channels. This Policy is subject to periodic review to ensure its suitability, adequacy, and effectiveness over time.
The implementation and maintenance of the ISMS ensure a structured and systematic approach aimed at continuously improving data security and protection, based on:
- The identification of specific objectives;
- The assignment of roles and responsibilities;
- The adoption of appropriate technical and organizational measures.
This commitment represents a strategic element for protecting the Company’s reputation and consolidating the trust of internal and external stakeholders.
Information security management systems certification 27001