Open menu

Quality Certificates

  • ISO 9001

    ISO 9001

    Certificate Name:
    ISO 9001:2015
    Initial Certification Date:
    09.12.2024
    Issue Date:
    09.12.2024
    Valid Until:
    09.12.2025
    Certificate No:
    TR-KYS-272
    Description:

    ISO 9001 is a certification that demonstrates our organization's services and systems comply with relevant quality and conformity requirements. With ISO 9001, we ensure that the quality standards of our services and operations are never compromised.

    View Document

  • ISO 10002

    ISO 10002

    Certificate Name:
    Management System as per TS ISO 10002:2018
    Initial Certification Date:
    07.12.2014
    Issue Date:
    05.12.2024
    Valid Until:
    06.12.2025
    Certificate No:
    TR-CS-272
    Description:

    ISO 10002 is a certification that confirms our organization's compliance with quality requirements for customer complaint management processes. Our organization holds the ISO 10002:2018 certification, approved by TÜV Austria, for effectively managing customer relations and processes.

    View Document

  • ISO 27001

    ISO 27001

    Certificate Name:
    ISO 27001:2022
    Initial Certification Date:
    07.12.2011
    Issue Date:
    05.12.2024
    Valid Until:
    06.12.2025
    Certificate No:
    TR-BGYS-272
    Description:

    ISO 27001 is a certification that validates our organization's rigorous approach to protecting confidential and sensitive data, as well as its high security measures. This certification serves as proof of our meticulous processes and reinforces the trust between us and our clients.

    View Document

  • ISO 27701

    ISO 27701

    Certificate Name:
    ISO 27701:2019
    Initial Certification Date:
    05.12.2021
    Issue Date:
    05.12.2023
    Valid Until:
    04.12.2024
    Certificate No:
    TR-KVKYS-304
    Description:

    This certification confirms that our organization's processes for handling personal data, as both a Data Controller and Data Processor, comply not only with legal obligations but also with the ISO 27701 Privacy Information Management System standard. Through this certification, we guarantee that safeguarding personal data privacy and security remains one of our top priorities across all processes.

    View Document

  • ISO 22301

    ISO 22301

    Certificate:
    ISO 22301:2019
    Initial Certification Date:
    11.02.2019
    Validity Date:
    02.01.2028
    Certificate No:
    20007190001154
    Description:

    ISO 22301 certifies our organization's adherence to business continuity management system requirements. This certification demonstrates our capability to maintain uninterrupted operations.

    View Document

  • ISAE 3402 Type 2

    ISAE 3402 Type 2

    Certificate:
    ISAE 3402 Type 2
    Issue Date:
    29.03.2024
    Description:

    The ISAE 3402 Type 2 certification verifies that our organization's operational, technical, and administrative processes related to the services we provide comply with independent audit standards. This certification demonstrates the transparency and reliability of our processes for our clients and business partners.

    View Document

  • Information Security Management System Policy

    INFORMATION SECURITY MANAGEMENT SYSTEM POLICY

    The main theme of ISO 27001 Information Security Management System is to show that the information security is ensured in the coverage of the Payroll, HR Management and Consultancy, Personnel Hiring, Payroll and HR Software which are carried out within BOSS YÖNETİŞİM HİZMETLERİ A.Ş. (BOSS GOVERNANCE SERVICE INC.) to secure the risk management, to measure the information security and privacy process performance and to ensure the arrangement of the relationships with the third parties.

    The applications relating to information security and privacy concern all of the parties that are affected by all of our work processes, employees, customers, solution partners, suppliers and the consequences of the works which we perform by means of complying with the obligations arising from the agreements and the work obligations, by means of working in coherence with the applications, laws and regulations relating to information security.

    All of the assets which belong to our company are shown in the Asset Inventory. The Asset Inventory may change in the frame of the changes and developments which occur in the course of time. The information security and privacy applications are an inevitable dimension of all of the activities realized and reviewed once in a year.

    The continuity of three fundamental elements of the information security management system will be ensured in all of the activities carried out.

    • Confidentiality: Preventing the unauthorized accesses to the important information.
    • Integrity: Showing that the accuracy and integrity of the information are ensured.
    • Accessibility: Showing the accessibility to the information under necessary cases by the authorized persons, related system standards, are related with the security of all of the data in written, printed, oral and similar environments but not the data which are kept in electronic environment only.
    • GENERAL MANAGER
    • AYŞE BURCU ÖZEL
    • 08.10.2021 / 05

    Customer Complaints and Satisfaction Policy

    CUSTOMER COMPLAINTS AND SATISFACTION POLICY

    By means of operating the process of taking up to the customer complaints effectively, BOSS YÖNETİŞİM HİZMETLERİ A.Ş. (BOSS GOVERNANCE SERVICE INC.) targets;

    • To make the undertaking of taking up the complaint carefully, with the process of taking up the complaint transparently and responsibly through which it could reach our company easily at any moment of complaint,
    • To increase and make sustainable the capability of our company to solve the complaints in a constant, systematic and responsible manner and satisfying the complainant and the corporation,
    • To increase the capability of our company to eliminate the tendencies, identification and reason of the complaints and to improve the quality of the service provided,
    • To develop a customer-focused approach in solving the complaints which reach our company and in order to encourage the employees of BOSS YÖNETİŞİM HİZMETLERİ A.Ş. (BOSS GOVERNANCE SERVICE INC.) on the subject of improvement of their capabilities in working with the customer,
    • To provide a sound foundation in order to review continuously and analyze the solution of the customer complaints and the process improvements performed.
    • GENERAL MANAGER
    • AYŞE BURCU ÖZEL
    • 05.11.2020 / 03

    Quality Policy

    QUALITY POLICY

    Boss Yönetişim Hizmetleri A.Ş. adopts the Excellence Model approach in its services. Our goal as a corporation committed to continuous development as a lifestyle and leading in technology and quality is to offer the services that will bring utmost benefit to our customers as the best solution partner, and to ensure the sustainable customer satisfaction.

    Our Main Objectives:

    • Rigorously abiding by the laws and legal arrangements, to keep the quality service understanding at the forefront at all times, to make no concessions on the principles of trust and privacy, to be aware that the way to satisfying our customers passes through happiness and satisfaction of our employees.
    • Providing the best working environment to our employees, to promote continuous development with trainings, and to reduce our costs, to increase our efficiency and longterm profitability, to secure our future, to work in mutual cooperation and trust with our suppliers.
    • To ensure the quality awareness in all activity sites and service units in systematic and regular way, to adopt the total quality management as a lifestyle, and to improve effectiveness of all the processes that influence our service quality continuously.
    • Continuously developing our knowledge and creativity for customer satisfaction, to put forth effective service models and technologies.

    Realizing the business excellence and our zero error targets through Total Quality Management is the duty of all of us as the employees of Boss Yönetişim Hizmetleri A.Ş..

    • GENERAL MANAGER
    • AYŞE BURCU ÖZEL
    • 05.11.2020 / 03

    Business Continuity Management System Policy

    BUSINESS CONTINUITY MANAGEMENT SYSTEM POLICY

    Boss Yönetişim Hizmetleri A.Ş aims the conformity with the requirements regarding establishment of an effective Business Continuity Management System and continuous improvement in accordance with the international standard ISO 22301.

    A holistic business continuity management structure is in place at BOSS for taking effective measures in disaster, crisis or interruption situations, minimizing the operational, financial, legal and reputational negative effects, ensuring continuance of the operations which have been identified to be critical in the targeted timeframe, and reverting to the state before the crisis.

    In case the events which may interrupt our services are at such extent that would endanger human life, protecting human life is of paramount importance and priority for our company.

    For a successful business continuity management, all our employees, suppliers and business partners should be aware of the duties and responsibilities falling to them, implement these before and during the event, and be prepared to such events.

    Responsibilities have been defined within the company for establishment and implementation of the business continuity planning and management system. The company employees are the main responsibility holders in determination of the business interruptions involving the operational processes the are part of, takin measures, and putting into effect the business continuity plan that has been created in advance also with their contributions when necessary, at the right time and free of error.

    Boss Yönetişim Hizmetleri A.Ş. undertakes that the practices concerning Business Continuity and Information Security are realized, continuously developed, in conformity with all the legal requirements, reviewed, and continuously improved.

    • GENERAL MANAGER
    • AYŞE BURCU ÖZEL
    • 11.05.2020 / 02

    Integrated Management System Policy

    INTEGRATED MANAGEMENT SYSTEM POLICY

    1. PURPOSE

    The primary purpose of this Policy is to establish the principles related to the methods and processes to be applied within the framework of the Integrated Management System (TS ISO/IEC 9001-27001-27701-22301-10002) and the Personal Data Protection Law (KVKK).


    Our Mission

    Customer Orientation: We provide innovative, high-quality, and tailored solutions to simplify business processes and enhance performance for companies.

    Technology and Innovation: We develop advanced technologies to meet the rapidly evolving needs of the business world, supporting digitalization and efficiency in processes.

    Social Responsibility: As a socially and environmentally responsible company, we integrate the principles of sustainable development into our business models, adding value to the future with community-focused projects.

    Team Spirit: We foster a corporate culture that supports employee development, encourages innovative thinking, and prioritizes teamwork.

    Trust and Transparency: We are committed to building long-term business partnerships based on mutual trust with our customers, without compromising ethical values in all business processes.


    Our Vision

    At CottGroup, we aim to lead the sustainable growth of the business world by offering innovative, reliable, and integrated solutions that meet global standards. As a leading brand in technology, consulting, and outsourcing services, we strive to alleviate our clients’ operational burdens while helping them achieve their strategic goals. With our high ethical standards, environmental awareness, and commitment to continuous improvement, we aim to be a solution partner that makes a difference in the business world.


    Our Values

    Professionalism: We prioritize expertise and quality in every service we deliver.

    Innovation: We continuously develop innovations to adapt to the changing business environment.

    Sustainability: We embrace sustainability in business processes, considering our environmental and social responsibilities.

    Excellence: We strive to meet and exceed excellence standards in all our services.

    Confidentiality: We ensure the security of customer and corporate information, working in compliance with information security standards and KVKK regulations.

    2. RESPONSIBILITY

    All employees are responsible for adhering to the legal and ethical principles defined within this Policy and the Integrated Management System.

    3. IMPLEMENTATION

    This Policy covers and applies to all integrated management activities of the Company that are related to the Personal Data Management System, the Business Continuity Management System and Information Technology Service Management including the requirements of Personal Data Protection Law (KVKK), Legal Compliance and Quality Management System, and the Information Security Management System.

    Policy Principles
    1. I. Ensuring the security of customer and personal data while meeting the objectives and expectations of the Integrated Management System.
    2. II. Complying with all applicable laws, regulations, and obligations under the KVKK framework.
    3. III. Prioritizing the satisfaction of employees, suppliers, partners, and customers while adhering to environmental, social responsibility, and sustainability principles.
    4. IV. Allocating financial resources and personnel for effective risk management and evaluating opportunities.
    5. V. Engaging in continuous improvement activities to ensure service sustainability and enhance customer satisfaction.
    6. VI. Aligning all company activities with legal regulations and KVKK requirements.
    7. VII. Ensuring business continuity during crises while prioritizing the protection of human life.

    As Boss Yönetişim Hizmetleri A.Ş., we commit to working in compliance with this Policy and the procedures implemented under it. Regulations concerning Quality, Information Security, Personal Data Security, and Business Continuity may be updated with the approval of the board of directors when necessary.