Information Security Policy

As a professional organization delivering products and services to critical infrastructure, Information Security is a core concern for Heimdall Power as an organization and integrated into all business activities and operations.

We establish our Information Security Management System as per the ISO 27001 requirements and best practices. 

The goal of the Information Security Management System is to ensure that Heimdall Power:
  • complies with internal and external requirements and expectations,
  • complies with relevant laws, rules, and regulations, and
  • operates according to security best practices. 
The Heimdall Power Information Security Management System is based on the following axioms:
  • international standards and best practices,

  • information security controls based on ISO 27001 Annex A,

  • risk management and assessment based on
    ISO 31000 and ISO 27005, and 

  • privacy regulations such as GDPR.

The Information Security Management System applies to all employees and third parties such as consultants, strategic suppliers, partners, and sub-contractors.