As a result, Advicom has become the eighth company in Poland which holds two certificates (ISO 20000 and ISO 27001).
Both certificates, i.e. the certificate of compliance of the Information Security Management System with ISO/IEC 27001 and the certificate of compliance of the IT Service Management System with ISO/IEC 20000, are a confirmation that the services are being developed on an ongoing basis and their quality is improving.
The very process of certification is complex. It involves several stages, during which the auditors carefully examine the processes applied at a given company in accordance with TÜV NORD CERT audit and certification procedure. As many as 169 companies in Poland adopted ISO 27001, but only 12 companies can boast ISO/IEC 20000, and Advicom Spółka z o.o. is one of these companies.
The Company has successfully completed the ISO/IEC 27001 certification process, which, among other things, means that any data provided by the clients is processed in accordance with the following principles:
- confidentiality (information is available solely to authorised personnel);
- integrity (accuracy and completeness of information and methods applied);
- availability (authorised users have access to information database only when this is required).
The model of the Security Management System is universal and independent of the nature and size of an organisation which is to adopt it. What is more, it should comprise any and all information whose security is managed.
ISO/IEC 20000 on the other hand, contains guidance on quality management processes involved in delivery of IT services. It was developed on the basis of the code of practice contained within the Information Technology Infrastructure Library, ITIL. In order to obtain such a certificate, a company has to demonstrate an adequate level of IT service management in various areas, including the following:
- planning and implementing service management;
- planning and implementing new or changed services;
- service delivery processes;
- resolution processes;
- control processes.
IT Services Management in compliance with ISO/IEC 20000 is worth implementing in such areas where the quality of staff and system operations is of key significance for the company’s business. IT is one of the most difficult areas to manage. The fact that Advicom Spółka z o.o. has adopted ISO/IEC 20000 provides its clients with a guarantee that the company’s services are of adequate quality, demonstrate effectiveness and are subject to ongoing control.
Additional information:
Companies in Poland which hold ISO 20000:
- KGHM Polska Miedź S.A.
- Lukas Bank S.A. (does not hold ISO 27001)
- Bank Zachodni WBK S.A.
- Bank Handlowy w Warszawie S.A.
- HP Enterprise Services (does not hold ISO 27001 – an international certificate)
- itelligence Sp. z o.o.
- The City Hall in Bydgoszcz
- Transition Technologies S.A.
- Elpoinformatyka Sp. z o.o. (does not hold ISO 27001)
- PN Standard s.j. (does not hold ISO 27001)
- Business Consulting Center Sp. z o.o.
- Advicom Spółka z o.o.
Advicom Spółka z o.o. is the eighth company in Poland which holds both certificates (ISO 20000 and ISO 27001).
- KGHM Polska Miedź S.A.
- Bank Zachodni WBK S.A.
- Bank Handlowy w Warszawie S.A.
- itelligence Sp. z o.o.
- The City Hall in Bydgoszcz
- Transition Technologies S.A.
- Business Consulting Center Sp. z o.o.
- Advicom Spółka z o.o.