Our corporate policy describes the purpose of the company, guiding principles and guidelines for our daily activities and is derived from the goals we set ourselves each year. This has resulted in an integrated management system. This is made up of the following central areas:
Sycor maintains guidelines, standard processes, work instructions and systematic internal control procedures in the form of internal and external audits as well as a risk management system for the continuous monitoring and improvement of management system performance.
The procedures and guidelines introduced are binding for all employees. This reinforces Sycor's customer focus and the associated quality standards. In addition to monitoring and continuous improvement, the integrated management system also aims to ensure competitiveness and cooperation.
The aim of the integrated management system is to ensure the basis for the continuous further development of the organization and thus the future viability of our business models. These aspects apply equally as requirements along our supply chain. Compliance with legal and regulatory requirements and our own specifications and guidelines is part of our self-image in order to contribute to the achievement of our vision and mission within the framework of our mission statement.
This corporate policy, our guidelines - in particular on cooperation and leadership - and Sycor's vision and mission are summarized in our Sycor Code of Conduct. The Code of Conduct has been approved by the management and is updated accordingly as required. Annual management reviews, internal and external audits as well as legal, regulatory and other requirements for the organization are included in the assessment.
Quality is not just one of the company values but also a fundamental part of our company strategy: Quality is found as a distinct target in our target system. Quality management plays an important role in reaching this target. It is the central tool, and other tools to reach our strategic objectives are embedded in it – such as the target system and the project management process model. All of our management areas – the target system, IT security management, IT service management, risk management, financial management, and occupational health & safety management – are also linked to each other by the central quality management documentation.
For instance, we provide for the systematic qualification of our employees. In doing so we ensure that their knowledge is always up to date, and that they are in the best possible position to meet the challenges of their position. Our processes ensure excellent service delivery: We use a uniform procedure – based on the international PMI standard – in project management and the best practice ITIL model in managed services. The certificates and awards received from our partners and independent third parties over the years also attest to our proven technological and solutions expertise as well as our comprehensive project experience. The fact that we meet the high requirements of these certificates, such as DIN EN ISO 9001, and continue to receive awards serves as both confirmation and motivation for us – we are on the right track with our own high quality standards and pursuit of continuous improvement!
Information security is a strategic company objective and therefore systematically part of the organization and processes. A clearly formulated target is that all Sycor employees participate directly in information security. We have set up an information security management system to ensure information security in our company. It is ISO 27001 certified and integrated into quality management.
We continuously determine the need for protection, conduct risk assessments, and periodically review the effectiveness of the information security system as well as the measures that have been introduced. Our employees regularly participate in training on the topic of information security as well. The training objectives are to make employees aware of information security and to ensure the proper handling of information. Since all of our activities related to information security are based on the approach of the Federal Office for Information Security (BSI), we are always informed about the current threat situation.
As a partner for digitalization, we accompany customers through technological change and help them utilize new mediums and technologies profitably for their business. At the same time, we take precautions concerning the agreed upon information security.
We are on the way to becoming a climate-neutral company, reporting and improving our carbon footprint every year and thus making an important contribution to environmental protection and the preservation of natural resources and ecosystems. Our contribution to environmental protection includes the use of modern energy-saving technology, modern infrastructure and remote communication solutions. In the supply chain, we take environmental and social aspects into account in our procurement.
We evaluate the relevant environmental aspects as well as opportunities and risks and also consider the requirements of interested parties.
Our energy consumption is constantly measured and monitored. Significant environmental and energy aspects are reviewed and communicated. We attach great importance to preventing environmental damage and waste and conserving resources.
As part of compliance, we ensure that legal requirements are also implemented in the environmental area and act holistically in accordance with the ESG requirements of the European Union. An organization responsible for compliance and governance elements has been established for this purpose.