Integrated Quality and Information Security Policy


TUNYTECH Business SRL

Based on international best practices of ISO 9001 (Quality) and ISO 27001 (Information Security) standards.

At TUNYTECH Business SRL, we are committed to providing technological consulting, software development, and IT engineering services to the highest standards, while ensuring uncompromising protection of the digital assets, infrastructure, and data of our clients, partners, and employees.

Although our integrated management system is not yet subject to official third-party certification, our organization bases all of its operational and strategic processes on the international best practices of the ISO 9001 and ISO 27001 standards.

Management is firmly committed to supporting, applying, and evolving the principles set forth in this policy.

1. Vision and Management Commitment

The ambition of TUNYTECH Business SRL is to be a benchmark technology partner, reliable and agile, capable of designing and deploying high-performance, scalable, and highly secure digital solutions.

General Management ensures the provision of the necessary resources to:

  • Promote a culture of excellence focused on customer satisfaction and contractual compliance.
  • Ensure a secure, integrated, and resilient work environment in the face of cyber threats and technological risks.
  • Ensure continuous improvement of our processes, methods, and tools.

2. Scope of Application

This policy applies to all activities delivered by TUNYTECH Business SRL, including:

  • Technology consulting, software architecture, and digital transformation services.
  • Design, development, integration, testing, and deployment of software applications and solutions.
  • Administration, operations, and secure maintenance of server infrastructures, cloud environments, and associated collaborative tools.
  • Customer relationship management, contractual monitoring, project management, and administrative support functions.

3. Quality Commitments (ISO 9001 Orientation)

To guarantee excellence and consistency in our service delivery, TUNYTECH Business SRL is committed to:

Customer satisfaction and active listening:

  • Thoroughly understand business challenges, technical requirements, and constraints of each client from the initial scoping phase.
  • Ensure transparent, collaborative, responsive project management that respects schedule and budget commitments.

Technical excellence and operational rigor:

  • Deploy top-tier skills and apply software engineering best practices (clean code, modular architecture, technical reviews, robustness testing).
  • Maintain continuous technology monitoring to deliver modern, efficient, and sustainable architectures.

Continuous improvement:

  • Systematically collect and analyze feedback at the close or key milestones of each engagement.
  • Identify areas for improvement, swiftly correct any anomalies, and continuously optimize our internal processes.

4. Information Security Commitments (ISO 27001 Orientation)

Mindful of the strategic and confidential nature of the data entrusted by our clients and of our own IT assets, TUNYTECH Business structures its security around four foundational pillars:

Confidentiality:

  • Ensure that source codes, project data, architectures, and client business information are accessible only to authorized personnel bound by professional secrecy.
  • Rigorously manage access to infrastructure servers, development environments, and code repositories (least privilege principle, enhanced authentication).

Integrity:

  • Protect source codes, databases, system configurations, and administrative documents against any accidental or unauthorized alteration.
  • Utilize strict traceability, version control, and change validation mechanisms (CI/CD, code reviews).

Availability:

  • Guarantee the continuity of our operational services and the resilience of our hosted technical environments through regular backups, encryption, and tested recovery protocols.

Risk management and operational resilience:

  • Proactively identify, assess, and address technical vulnerabilities, cyber threats, and organizational risks facing our projects and systems.
  • Maintain high internal awareness of cyber hygiene principles, phishing detection, and data leakage prevention.

5. Legal and Regulatory Compliance

TUNYTECH Business SRL is committed to strictly complying with the legal, regulatory, and contractual framework applicable to its activities:

  • Strict adherence to the General Data Protection Regulation (GDPR - EU Regulation 2016/679) and Belgian legislation on personal data protection.
  • Compliance with non-disclosure agreements (NDAs), software licenses, intellectual property rights, and cybersecurity requirements agreed with our clients.

6. Objectives and Continuous Improvement

Management periodically defines and reviews measurable indicators to steer this integrated approach:

  • Customer satisfaction rate upon completion of deliverables and projects.
  • Adherence to service commitments, contractual milestones, and technical acceptance criteria.
  • Availability rate of our infrastructure and operational platforms.
  • Absence of major security incidents, code compromises, or confidential data breaches.

This policy is communicated to all employees, made available to our partners and clients on the tunytech.co website, and reviewed at least once a year or upon any major organizational or technological change.

For TUNYTECH Business SRL

Amir Aouani

Managing Director