ISO/IEC 27001:2022

Graffiquo dedication has been recognized across the region through.

Graffiquo Asia Sdn Bhd (GASB) is dedicated to safeguarding its information assets and maintaining the highest standards of information security. We ensure the confidentiality, integrity, and availability of critical information, not only to support our operations but also to protect the trust and data of our customers. Our approach to security aligns with our business objectives, risk management strategies, and all applicable legal and regulatory requirements. GASB is committed to continually enhancing our Information Security Management System (ISMS) by
proactively identifying emerging threats and adapting our security controls to address evolving
business needs.

Objectives

To protect our information assets and complying with all applicable laws and regulations, we are committed to:

 

  • Confidentiality: Safeguard sensitive information from unauthorized access to protect
    both company and customer data.
  • Integrity: Ensure that all information is accurate, complete, and consistent by implementing controls to prevent unauthorized modification.
  • Availability: Ensure that critical information and systems remain accessible to authorized users when needed to support operational efficiency and business continuity.
  • Risk Management: Integrate a robust risk assessment process into our security practices, enabling us to identify, evaluate, and mitigate potential security risks.
  • Compliance: Adhere to all relevant legal, regulatory, and contractual obligations concerning information security, such as the Cybersecurity Act 2024 (Act 854) and international standards like ISO/IEC 27001:2022.
  • Continuous Improvement: Regularly review and enhance our ISMS to ensure its effectiveness, address new and evolving security threats, and adapt to changes in business processes and technology
  • Security Awareness: Promote a culture of security awareness across all levels of the organization through ongoing training and communication, ensuring that employees understand their roles and responsibilities in safeguarding information

What can we do for you?

Feel free to ask us any questions and we’re here for you.