QCIC is certified to ISO 9001:2015 for the management of global security engineering consultancy, professional services and security system programming automation. Throughout 2017, QCIC’s Quality Management Systems were wholly revised to comply with the latest revision of this International Quality Standard. We updated policies, conducted training and internal audit, built systems, reinforced governance and added to existing good practice.
QCIC is certified to ISO 27001:2013 for the management of global security engineering consultancy, professional services and security system programming automation. In December 2017, our Business Continuity and Information Security Management Systems were tested and independently verified by UKAS accredited certification body, ACS Registrars. Certification to this Standard reiterates QCIC’s commitment to best practice protection of client information within our possession.
QCIC is committed to preserving the confidentiality, integrity and availability of all the physical and electronic information assets throughout our business in order to preserve our competitive edge, cash flow, profitability, legal, regulatory and contractual compliance and commercial image.
Information and information security requirements are aligned with QCIC goals and our Information Security Management System (ISMS) is intended to be an enabling mechanism for information sharing, for electronic operations and for reducing information related risks to acceptable levels.
Our strategic business plan and risk management framework provide the context for identifying, assessing, evaluating and controlling information-related risks through the establishment and maintenance of an ISMS. Our risk assessments and risk treatment plans identify how information-related risks are controlled. Our Infrastructure Manager is responsible for the management and maintenance of the risk treatment plans. Additional risk assessments may, where necessary, be carried out to determine appropriate controls for specific risks.
In particular, business continuity and recovery plans, data back-up procedures, avoidance of viruses and hackers, access control to systems and information security incident reporting are fundamental to this policy. Control objectives for each of these are areas contained in our Information Security Manual and are supported by specific, documented policies and procedures.
We have established an Information Security Committee to support the implementation of the Information Security Management System.
QCIC is committed to the practice of responsible corporate behaviour. Through our business practices we seek to protect and promote the human rights and basic freedoms of all our stakeholders, including our personnel and those personnel of our suppliers.
We are also committed to eliminating bribery and corruption. It is essential that all personnel and persons associated with QCIC adhere to this policy and abstain from giving or receiving bribes of any form.
We are vehemently opposed to the use of slavery in all forms; cruel, inhuman or degrading punishments; and any attempt to control or reduce freedom of thought, conscience and religion. We will ensure that all of our personnel are entitled to their human rights. We will not enter into any business arrangement with any person, company or organisation which fails to uphold the human rights of its workers or who breach the human rights of those affected by the organisation's activities.
We are committed to keeping the environmental impact of our activities to a minimum and we have established an Environmental Policy and Environmental Management Plan in order to help achieve this aim.
Conflicts of Interest
We have developed a Corporate Gifts and Hospitality Policy, which provides rules and guidelines concerning the conduct of our personnel aimed at minimising the possibility of conflicts of interest and at avoiding risks associated with bribery and corruption.
Information and Confidentiality
Information received by personnel of QCIC will not be used for any personal gain, nor will it be used for any purpose beyond that for which it was given.
Suppliers and Partners
We expect our suppliers and partners to work towards and uphold similar ethical and moral standards. We will investigate the ethical record of potential new suppliers before entering into any agreement. We reserve the right to request information from suppliers regarding the production and sources of goods supplied. We reserve the right to withdraw from any agreement or other arrangement with any supplier or partner who is found to have acted in contravention of the spirit or principles of our Ethics Policy.
Anti-Bribery and Corruption
We are committed to the practice of responsible corporate behaviour and to complying with all laws, regulations and other requirements which govern the conduct of our operations, as set out in our Anti-Bribery Policy. We are fundamentally opposed to any acts of bribery and to the making of facilitation payments.
QCIC strives for continuous improvement in the way it delivers its products, services, assets and solutions. The objective of this is to ensure that QCIC delivers consistently high performance in an efficient and continuously improving way so as to meet our client and stakeholder needs.
Our Quality Policy applies to all QCIC offices and global operations.
We will ensure the delivery of its services through the following measures:
The Director and Strategic Advisors are responsible for reviewing this process to ensure that it is fit for purpose.