General Information Security Policy

Requirement 5.2 — ISO 27001

Effective date: July 27, 2026

Commitment to Information Security

Information Security at FINTREE SERVICIOS Y ASESORÍAS FINANCIERAS SPA is a fundamental part of the business in order to provide trust to our clients and users regarding the information technologies we operate. Data, based on our information classification, is managed to the highest standards according to the best practices available in the market, which is a foundation for our organizational growth and sustainability.

Information Security at FINTREE SERVICIOS Y ASESORÍAS FINANCIERAS SPA is made possible by top management's commitment to promoting a culture of continuous improvement, providing the necessary resources and tools.

Top management is committed to ensuring the confidentiality, integrity, and availability of information, ensuring compliance with the defined security objectives.

Information Security Objectives

FINTREE SERVICIOS Y ASESORÍAS FINANCIERAS SPA declares the following information security objectives aligned with the ISMS and its strategy:

  • Ensure the operational continuity of Software services so that Family Offices have access to their financial information whenever they need it.
  • Strengthen access controls and change traceability in the cloud infrastructure to prevent the execution of unauthorized processes and protect the integrity of client data.
  • Integrate security criteria from design through software deployment, in order to reduce the presence of exploitable vulnerabilities in mobile and web applications.
  • Promote the secure use of access credentials and raise the response capability of internal and external users against account compromise attempts.

Regulatory Compliance

Top management understands and addresses the importance and benefits of remaining in compliance, not only with ISO 27001 requirements and security best practices, but also with other legal, contractual, and governmental requirements relevant to the organization's context.

Communication of Policies and Procedures

At FINTREE SERVICIOS Y ASESORÍAS FINANCIERAS SPA, our Information Security policies and procedures are generally known to employees, where applicable. To the extent possible and based on the defined ISMS Communication Plan, our key stakeholders will be informed of our guidelines and best practices.

Contact

If you have any questions about this Information Security Policy, please contact us: