IMS Policy Statement

Updated Date: 31st July 2026

Policy Statement

Phillips Outsourcing Limited (POL) is committed to delivering innovative, reliable, and value-driven outsourcing solutions that consistently meet customer expectations while safeguarding information assets and continually improving the effectiveness of its Integrated Management System (IMS).

 

Our Integrated Management System integrates the requirements of ISO 9001:2015 (Quality Management System) and ISO/IEC 27001:2022 (Information Security Management System) to ensure excellence in service delivery and the protection of information entrusted to us by our clients, employees, partners, and other interested parties.

POL recognizes that quality and information security are fundamental to achieving customer satisfaction, operational excellence, business sustainability, and stakeholder confidence.

Our Commitments

Phillips Outsourcing Limited is committed to:

 
1. Delivering Quality Services

• Deliver consistent, reliable, and high-quality outsourcing services that meet or exceed customer and regulatory requirements.
• Understand and satisfy the needs and expectations of customers and other interested parties.
• Promote customer satisfaction through efficient, responsive, and value-adding service delivery.

 

2. Protecting Information

• Protect the confidentiality, integrity, and availability of information assets throughout their lifecycle.
• Implement appropriate information security controls to safeguard client, employee, and organizational information against unauthorized access, loss, disclosure, alteration, or destruction.
• Manage information security risks using a structured risk-based approach.

 

3. Compliance

• Comply with all applicable legal, statutory, regulatory, contractual, and other obligations relating to our services, quality, information security, and business operations.
• Fulfil applicable requirements of ISO 9001:2015 and ISO/IEC 27001:2022.

 

4. Risk-Based Management

• Identify, assess, treat, and monitor risks and opportunities that may affect service quality, information security, and business objectives.
• Integrate risk management into decision-making and operational processes.

 

5. Continual Improvement

• Continually improve the effectiveness, suitability, and performance of the Integrated Management System through monitoring, measurement, audits, management reviews, corrective actions, innovation, and employee engagement.
• Establish measurable objectives and regularly evaluate performance against them.

 

6. Competence and Awareness

• Develop competent employees through training, awareness, knowledge sharing, and professional development.
• Foster a culture where every employee understands their responsibilities for quality, information security, and continual improvement.

 

7. Leadership and Accountability

• Demonstrate leadership commitment by providing the resources necessary to establish, implement, maintain, and continually improve the Integrated Management System.
• Promote accountability at all organizational levels for achieving IMS objectives and complying with this policy.

 

8. Business Resilience

• Enhance operational resilience through effective governance, incident management, and preparedness to minimize disruptions to service delivery and information security.

IMS Objectives

To support this policy, Phillips Outsourcing Limited shall establish measurable Integrated Management System objectives that seek to:
• Improve customer satisfaction.
• Enhance service quality and operational efficiency.
• Reduce process failures and service nonconformities.
• Protect information assets from security threats and vulnerabilities.
• Reduce information security incidents.
• Improve employee competence and awareness.
• Achieve continual improvement across all business processes.
• Strengthen stakeholder confidence and organizational resilience.

Scope of Application

This policy applies to:
• All employees of Phillips Outsourcing Limited.
• Contract staff and temporary personnel.
• Consultants and interns.
• Third-party service providers where applicable.
• All business processes, information assets, facilities, and technologies within the approved scope of the Integrated Management System.
All personnel are required to understand, support, and comply with this policy and all related IMS procedures and controls.

Implementation

Management shall ensure that this policy is:
• Communicated throughout the organization.
• Available to relevant interested parties, where appropriate.
• Implemented through documented processes and operational controls.
• Periodically reviewed to ensure its continuing suitability, adequacy, and effectiveness.
• Updated whenever significant organizational, regulatory, or business changes occur.

Integrated Management System Policy Statement

Document Number: POL-IMS-POL-001
Version: 1.0
Effective Date: 31 July 2026
Approved By: Managing Director
Next Review Date: 31st July 2027

Signed: Management