Last updated: August 28th, 2026
The Board and Management of PocketApp, which operates in the Financial Technology sector, are committed to preserving the confidentiality, integrity, and availability of all physical and electronic information assets throughout the organization, to preserve its assets, legal, regulatory, as well as contractual, compliance, and image. The Integrated Management Systems (ISO 27001 and ISO 22301) requirements will continue to be aligned with organizational goals and is also intended to be an enabling mechanism for information sharing, electronic operations, and reducing information & technology-related risks to acceptable levels.
PocketApp is committed to providing quality services to our customers, both internal and external, by aligning Information Technology investments with organizational goals. PocketApp has aligned its processes and operations to the requirements of the ISO27001:2022 and ISO22301:2019 standard to ensure business continuity, protection of its information asset and maximization of benefit/returns on IT investments.
It is therefore PocketApp’s policy to ensure:
- PocketApp’s current strategy and Integrated Management System (IMS) provide the context for identifying, assessing, evaluating, and controlling information/process-related risks through the establishment and maintenance of the IMS. The risk assessment and risk treatment plan capture how identified risks are controlled in alignment with PocketApp’s risk management strategy.
- Business continuity and contingency plans, data backup procedures, systems access control, and information security incident reporting are fundamental to this policy. All PocketApp employees are responsible for promptly reporting actual or suspected information security incidents in accordance with the organization’s incident reporting procedures.
- Information security education, awareness and training are made available to all stakeholders
- All employees of PocketApp and external parties identified in the Management Systems are expected to comply with this policy.
- The IMS shall be subject to continuous and systematic review with improvements adopted, where necessary.
- Management is committed to the continual improvement of the ISMS in the organization.
- Breach of the policy or security mechanism may warrant disciplinary measures, up to and including termination of contract, as well as legal action in line with the Cybercrime Prohibition Act 2015.