QUALITY AND INFORMATION SECURITY POLICY

TIS GRUPA d.o.o. (further on: Organization) is a software company providing information technology products and services to clients in financial, telecommunications, manufacturing, logistics, public sector, and other industries.  The Organization is one of the leading Croatian IT companies, specialized in the design, development, implementation, and maintenance of complex ICT solutions. The primary goal of the Organization is to be recognized by customers, vendors, employees, and society as a professional, reliable partner and a company of high quality. The Organization is involved in the development, implementation, and maintenance of solutions across various sectors, including finance and banking, the telecommunications industry, government bodies, the economy, production, and transportation. The Organization particularly stands out in the banking sector where it has been recognized as a company with extensive experience and knowledge as well as high-quality solutions. The Organization is oriented toward maintaining long-term relationships with its customers. The guiding principle behind all our actions as a company can be summarized in the phrase - "with the customer, for the customer".

Essential to these actions are several factors: the quality of our products and services, effective communication with the client, and ongoing support to help clients clearly define their needs and requirements. Additionally, we ensure that our solutions can be used for their intended purpose while maintaining high quality and information security.

The high reputation and recognition of our company in the market is achieved through commitment to customers and the dedication of our employees to continuous professional development and knowledge. Quality and information security objectives, operational and action plans and other objectives are aligned with the company's strategic goals. These objectives also comply with legal, regulatory, contractual requirements and requirements related to information security which the company is committed to respecting. Quality and information security objectives are documented, regularly monitored, and updated.

The Organization is committed to preserving the confidentiality, integrity, and availability of information and to continually improve its quality and information security management system. Quality and information security management system is applicable to all organizational units as well as to third parties involved in quality and information security management system. Our commitment to quality and information security is integrated into our vision, mission, strategy, objectives, business processes and integrated management system that adhere to international standards ISO 9001:2015 and ISO 27001:2022.