Whistl ESG Annual Report 2023

Welcome & About Whistl

Data privacy and security Protecting the sensitive data of our team and customers is both a business and a moral requirement. We acknowledge the heightened risks to our data and systems and employ an Information Security Management System (ISMS) aligned with ISO 27001 principles, the international best-practice standard for ISMS. To mitigate potential threats, we implement controls such as vulnerability management, penetration testing, network monitoring, audits and access reviews. These are complemented by regular security reviews, strategic investments, training and a comprehensive Business Continuity Plan. We have reported no breaches in information security in 2023 and will continue to remain vigilant against the evolving nature of cyber threats. We hold our suppliers to the same high standards and share our supplier expectations within our supplier charter. Suppliers must implement best practice IT security controls, including audio/visual, patching and upgrades, network security, endpoint security, and strong two-factor authentication to maximise security. They should ideally be certified as complying with ISO 27001. 2023 performance: 0 information security breaches

Whistl’s ESG strategy

Valuing colleagues

Fulfilling opportunities

Preserving our natural environment

Task Force on Climate-related Financial Disclosures

Appendices

25

2023 ESG Report

Made with FlippingBook flipbook maker