Yunbit
Information security policy
National Security Scheme
1. Approval and Effective Date
The Information Security Policy is effective from February 24, 2026, until it is replaced by a new policy.
2. YUNBIT SL's Mission
To achieve its objectives, YUNBIT SL is committed to information security, pledging to its proper management in order to offer all its stakeholders the greatest guarantees regarding the security of the information used.
These systems must be managed diligently, taking appropriate measures to protect them against accidental or deliberate damage that could affect the availability, integrity, or confidentiality of the information processed or the services provided.
The objective of information security is to guarantee the quality of information and the continuous provision of services by acting preventively, monitoring daily activity, and reacting promptly to incidents.
ICT systems must be protected against rapidly evolving threats with the potential to impact the confidentiality, integrity, availability, intended use, and value of information and services. To defend against these threats, a strategy is required that adapts to changing environmental conditions to ensure the continuous delivery of services. This implies that departments must implement the minimum security measures required by the National Security Framework, as well as continuously monitor service delivery levels, track and analyze reported vulnerabilities, and prepare an effective incident response to guarantee the continuity of services provided.
The various departments must ensure that ICT security is an integral part of every stage of the system lifecycle, from its conception to its retirement from service, including development or acquisition decisions and operational activities. Security requirements and funding needs must be identified, both for the products it develops and their associated services, as well as for the underlying software acquired from third parties. Departments must be prepared to prevent, detect, respond to, and recover from incidents, in accordance with Article 8 of the National Security Framework (ENS) (Article 8. Prevention, detection, response, and preservation).
3. Scope
This policy applies to all ICT systems of the entity and to all members of YUNBIT SL involved in services and projects for the public sector that require the application of the ENS, without exception. That is to say: THE INFORMATION SYSTEMS THAT SUPPORT THE SERVICES OFFERED BY THE SUITE OF BUSINESS MANAGEMENT TOOLS AND APPLICATIONS DEVELOPED IN CLOUD COMPUTING BY YUNBIT S.L. ACCORDING TO THE STATEMENT OF APPLICABILITY.
If you would like the complete "Security Policy" document, you can request it from calidad@yunbit.es
ISO 27001 - Security policy
Access the full policy in PDF format
