Cybersecurity is a top priority for LAUMAS (Laumas Elettronica Srl). This policy outlines the Management's commitment to implementing a “Cybersecurity Model” designed to safeguard the company's IT systems and the information contained therein against both internal and external threats. To develop this Model, LAUMAS collaborates with a consultancy firm specialized in “Data Governance & Protection,” which supports the certification of the measures outlined in this document. The Model is aligned with the EU Directive 2022/2555 “NIS2”, which serves as the regulatory framework, ensuring its full implementation.
The adoption of an effective “Cybersecurity Model” pursues the following objectives:
This policy applies to all employees, collaborators, suppliers and third parties who access the computer systems and company information of LAUMAS.
LAUMAS undertakes to adopt adequate and proportionate technical, operational and organizational measures to manage the risks posed to the security of IT and network systems, used in its business or in the provision of its services, as well as to prevent or minimize the impact of incidents for the recipients of its services. The measures adopted are based on a multi-risk approach, aimed at protecting IT systems and include:
LAUMAS will provide regular training and updates on cybersecurity to all employees, to ensure awareness and understanding of Cybersecurity best practices. LAUMAS will select suppliers who guarantee adequate security standards, periodically monitoring their level of reliability.
The application of this policy will be regularly monitored and, if necessary, integrated in the event of significant changes in cyber threats or regulatory requirements. The Management is therefore committed to continuously improving its Cybersecurity posture, to protect its resources, consolidate the trust of stakeholders and contribute to the development, security and progress of the company.