Security Policy
Vertage is a leading, international full-service HR service provider. In addition, the organization has the largest platform for temporary work for professionals, offering total talent solutions with a perfect combination of tech and touch. To achieve this, it is essential that the security of the platform and the IT infrastructure is and remains guaranteed. It is in the interest of Vertage’s stakeholders that this is done with the greatest possible care.
To achieve this, the board of Vertage maintains and improves a management process (Information Security Management System, ISMS) in accordance with ISO27001.
This enables Vertage to:
- Securing and standardizing information security in the primary and secondary processes;
- To provide verifiable guarantee of our information security to clients and partners;
- Continuously improve our information security;
- Mitigating critical and high risks related to the loss of availability, confidentiality and/or integrity of information;
- Mitigate medium risks related to the loss of availability, confidentiality and/or integrity of information if they contribute to the achievement of the Vertage objectives.
To achieve the above, the board of Vertage will:
1. To be the example in securing information security;
2. Review this policy every two years or immediately if there are major changes;
3. Carry out the other responsibilities from the ISMS.
At least one of the following rules of conduct apply to the board, management and employees of Vertage:
- Report security incidents and weaknesses directly to the security officer via security@headfirst.nl;
- Keep software up-to-date at your workplace;
- Lock your laptop when leaving your workplace;
- Adhere to the clean desk rules for internal and confidential information;
- Do not leave company assets (such as laptops, smartphones, etc.) in your car;
- Use MFA (password and code) and use strong passwords;
- Watch out for suspicious emails and never click on links as a matter of course;
- Only use secure websites (the green lock in the address bar);
- Never share passwords with others and only store them in your digital Vertage vault;
- Store Vertage information only on the server, not on your local workplace/mobile device;
- Do not distribute internal or confidential information to unauthorized persons;
- Guide guests and make sure doors are closed and locked;
- Always ask two control questions to verify that you have the right person on the line.
Also apply the above rules if you work at home or on location with customers and address each other about complying with these rules.
All rules for information security are described in the security manual, if you have any questions, please contact the security officer.