BMA achieves international certification in information security
We are pleased to announce that we have achieved ISO 27001 certification in Information Security Management, following a process that included a rigorous audit.
The ISO covers protection of data at different levels, starting with a risk analysis and going on to a treatment plan and control measures designed to avoid exploitation of weak spots in information security systems. The process is continually evolving, to ensure that the data of organizations and their clients is protected.
For Amir Bocayuva, BMA’s managing partner, certification to ISO 27001 seals our commitment to the best data protection solutions and procedures. “The certification reassures us that our processes and systems for protection of data and prevention and management of information security risks follow the best practices, and that our data, and the data entrusted to us by our clients, is adequately protected,“ he highlights.
Our IT manager, Marcello Rodriguez, also commented on achieving the ISO certification. “The certification process includes three audit stages, starting with a check of the procedures and controls that have been adopted to confirm that the standard is fully in place. At the second stage, the auditors evaluate the functioning of the information security management system to ensure that it is operating to standard. Last, there are regular visits to check that the system not just continues to conform to the standard, but continues evolving.”
Adhering to ISO 27001 is part of our firm’s commitment to risk management and corporate governance, and to compliance data protection laws.