As ACV, to ensure Customer Satisfaction by being aware of our responsibility to the Environment and Human;
- We will ensure compliance with legal requirements and all applicable standards while meeting customer-specific requests.
- We will adopt a sustainable development approach at every stage of design, investment, procurement, and production processes, continuously evaluating the impacts on quality, the environment, and occupational safety.
- We will continuously improve our quality levels, safe working conditions, and environmental impacts, as well as our production and energy efficiency, and we will provide all necessary resources to achieve these goals.
- We will engage in efforts to optimize energy and natural resource usage and to reduce risks related to environmental pollution, occupational safety, and health.
- We will raise awareness among all our employees, suppliers, and subcontractors, and take necessary steps to ensure their participation.
We pledge to deliver the expected quality in a timely manner.
INFORMATION SECURITY POLICY
Our organization, operating in the manufacturing of automotive aftermarket spare parts, places customer satisfaction at the core of all its activities and recognizes information as one of its most valuable assets. To ensure the security of information, we implement all necessary administrative and technical measures.
Accordingly, to ensure the continual improvement of our Information Security Management System (ISMS), we are committed to identifying our information assets and evaluating:
Their business impact, including the cost of replacement, the confidentiality of information, the potential impact on the organization's reputation, and any legal or regulatory liabilities arising from the loss, disclosure, or compromise of information.
The likelihood of threats, by considering the number and severity of vulnerabilities, the effectiveness of existing controls in mitigating those vulnerabilities, the motivation of potential attackers, the attractiveness of the information to competitors, weaknesses in access controls, and risks affecting the integrity of information.
- To comply with all applicable requirements of the Turkish Personal Data Protection Law No. 6698 (KVKK) regarding the collection, processing, storage, and sharing of personal data.
- To identify and assess risks related to the confidentiality, integrity, and availability of information.
- To implement appropriate controls for all assets with risk levels exceeding the organization's acceptable risk threshold.
- To minimize the likelihood of information security incidents and, in the event of such incidents, to respond promptly and in a coordinated manner.
- To prevent disruptions that may adversely affect business continuity and, where prevention is not possible, to restore operations within the established recovery time objectives.
- To monitor and measure the performance of Information Security Management processes.
- To establish measurable objectives based on the results of performance monitoring and evaluation.
- To minimize vulnerabilities and threats through continuous investments in infrastructure, the working environment, hardware, software, and employee awareness and training.
- To meet the information security requirements arising from our business activities, customer expectations, and applicable legal and regulatory obligations.
We hereby commit to fulfilling these principles.
Chairman of the Board



