Política de Gestión de la Seguridad de la Información

The Information Security Management System of ORDAX has as its fundamental objective the protection of information, offering its employees, clients, and suppliers a secure working environment through appropriate security measures and operational processes. The principles of our information security policy are:
  • Confidentiality: Information must be known exclusively by authorized persons.
  • Integrity: Information must always be complete, accurate, valid, and free from manipulation.
  • Availability: Information must always be accessible to authorized users at all times, and its persistence must be guaranteed in the face of any eventuality.
At ORDAX, we are aware that our moving, transport, and storage services, as well as our Call Center services, require proper protection and management in order to ensure service continuity and minimize potential damages caused by information security failures. For this purpose, we commit to the following:
    • The ongoing commitment of ORDAX in information security management will be demonstrated through training and awareness programs that encourage participatory management in these areas, enabling staff skills to be leveraged for continuous improvement of production processes and security.
    • To ensure the development of our activities within applicable laws and regulations, we will comply with current legislation and regulations, as well as other requirements subscribed with our clients, including those related to information security and data protection.
    • Meet requirements and continuously improve the effectiveness of the Information Security Management System by implementing measurement and monitoring systems for the services provided to our clients, as well as security objectives.
Carry out and periodically review a risk analysis based on recognized methods that allow us to establish the level of information security and minimize risks through the development of specific policies, technical solutions, and contractual agreements with specialized organizations.
    • ORDAX staff will perform their work aimed at achieving the established objectives and always in accordance with legal requirements as well as client requirements.
    • Selection of employees, suppliers, and subcontractors based on information security criteria.
Any incident or weakness that may compromise or has compromised the confidentiality, integrity, and/or availability of information must be recorded and analyzed in order to apply the corresponding corrective and/or preventive measures. Likewise, they will be communicated to the relevant stakeholders within the appropriate timeframes. Signed: Madrid, January 17, 2024.