Business Continuity Policy
The Business Continuity Policy based on the principle of analyzing and taking measures against the risks that can interrupt the services, ensures the formation and delivery of training and awareness raising activities.
Purpose
KKB Kredi Kayıt Bürosu A.Ş. has prepared the Business Continuity Policy in order to express the importance that its management attaches to Business Continuity Management and the support it provides to the work done and to be done in this direction.
The purpose of the Business Continuity Policy is to identify potential risks that could cause service interruptions, ensure analyses are conducted to take precautions against these risks, and create and implement training and awareness programs.
Scope
The “Business Continuity Policy” covers all operations and activities, including practices, policies, procedures, standards and the Business Continuity Management System carried out within this scope, and all business and IT processes, IT and communication infrastructure, facilities and all KKB employees that constitute KKB's products and services. External sources providing products, information and services to KKB are also included in this scope.
Responsible Parties
Responsibilities are defined within the company for the establishment and implementation of business continuity planning and management systems. Company employees have the main responsibility for identifying the causes of business interruptions related to the operational processes they manage or are a part of, taking precautions, and, when necessary, putting into effect the business continuity plan that has been created in advance with their contribution at the right time and without error.
ISO 22301 - Business Continuity Policy
KKB Senior Management is committed to maintaining a sustainable and effective Business Continuity Management System that meets the expectations of its members, customers and stakeholders. To this end, KKB is committed to:
- Prioritising the protection of the life, health and property of employees and relevant stakeholders within the scope of the Business Continuity Management System (BCMS);
- Establishing, implementing, maintaining and continually improving the BCMS in accordance with the requirements of ISO 22301:2019;
- Providing the human resources, infrastructure, technology and financial resources necessary to ensure the continuity and effectiveness of the BCMS;
- Delivering services that meet the expectations of members, customers and stakeholders while complying with applicable legal, regulatory and contractual requirements;
- Minimising the operational, financial, legal and reputational impacts of disruptive incidents by ensuring that business disruptions are managed with the least possible impact;
- Enhancing the preparedness of KKB employees, senior management and facilities for natural disasters and other disruptive events;
- Maintaining agreed minimum service levels and meeting defined Recovery Time Objectives (RTOs) during emergencies and business disruptions;
- Identifying, assessing and managing risks and threats that may affect business continuity;
- Ensuring that Business Impact Analyses (BIAs), risk assessments and business continuity plans are regularly reviewed and kept up to date;
- Ensuring the effective management of processes related to the planning, implementation, monitoring and continual improvement of business continuity;
- Promoting employee awareness and competence in business continuity through ongoing training and development programmes;
- Enhancing member, customer and stakeholder satisfaction by fostering a culture of continual service improvement.