International Information Security Day: how to avoid total disaster
Like every November 30 since 1988, International Information Security Day is celebrated. The objective is to remind and raise awareness in society about the importance of protecting information and the tools that manage it.
The initiative arose from the prestigious Association for Computer Machinery (ACM), which integrates professionals, researchers and trainers in the field of computing. Its objective was to carry out joint actions at the institutional, educational and business levels, to raise awareness of the importance of protecting information by implementing security measures in the systems.
The date was not chosen at random: the aim was to promote awareness about computer security during the Christmas preseason, when more purchases are made online.
At Fraternidad-Muprespa, aware that information is the main asset we have, we have a firm commitment to its protection, which is reflected in numerous projects and initiatives carried out in this matter.
Among them currently it is worth highlighting the implementation and maintenance of a Information Security Management System, based on the international standard included in the ISO 27001 standard. Also that of a Privacy Management System, adjusted to the General Regulations of Data Protection and Organic Law on Data Protection and guarantee of digital rights, whose compliance is periodically audited by a duly accredited external entity.
Likewise, the Mutual Fund is adhered to Digital Pact for the Protection of People, an initiative launched by the Spanish Agency for Data Protection, which aims to promote a firm commitment to privacy in the sustainability policies and business models of organizations, making compatible the fundamental right to data protection with innovation, ethics and business competitiveness.
Finally, Fraternidad-Muprespa has developed a Training, awareness and culturalization plan on information security, the scope of which extends to all the entity's personnel, both internal and external. Given that no one is exempt from suffering an attack on their computer security, it is important to raise awareness and train staff to achieve an adequate level of security in their data and in the organization..