Compliance of the management system confirmed by certification audit
Valid until 09. November 2025

4. Context of the organization
Compliant
The Clear Decisions Company Ltd: clear understanding of market and environmental requirements as well as information security aspects
\Ungültig:
The Clear Decisions Company Ltd demonstrates a clear understanding of the requirements related to quality, environmental protection, and information security, the relevant legal, contractual, and other binding obligations, and the market conditions that influence its operations. The scope and structure of the quality, environmental, and information security management system comply with the requirements of ISO 9001, ISO 14001, and ISO 27001.
|
Chapter 4.1: Ungültig: | Fully available |
|
Chapter 4.2: Requirements and expectations of interested parties are determined | Fully available |
|
Chapter 4.3: Ungültig: | Fully available |

5. Leadership
Compliant
The Clear Decisions Company Ltd takes responsibility for quality, environmental protection, and information security.
The management of Ungültig:
The Clear Decisions Company Ltd is actively committed to quality, environmental protection, and information security. It makes key decisions to ensure compliance with relevant legal, contractual, and other binding obligations. In addition, it promotes the continuous improvement of quality, environmental, and information security performance.
|
Chapter 5.1: Leadership and commitment requirements are met | Fully available |
|
Chapter 5.2: Ungültig: | Fully available |
|
Chapter 5.3: Roles and responsibilities for quality, environmental protection, and information security are defined and practiced | Fully available |

6. Planning
Compliant
The Clear Decisions Company Ltd plans business activities with consideration for quality, environmental and information security aspects
Quality, environmental, and information security objectives, risks, and the management of changes are clearly defined and documented. Ungültig:
The Clear Decisions Company Ltd plans orders in a risk-aware and forward-looking manner. This helps prevent errors, reduce environmental impacts, and effectively avoid security incidents. Customers benefit from reliable processes, sustainable practices, and the secure handling of sensitive information.
|
Chapter 6.1: Ungültig: | Fully available |
|
Chapter 6.2: Ungültig: | Fully available |
|
Chapter 6.3: Changes are organized in a structured manner | Fully available |

7. Support
Compliant
The Clear Decisions Company Ltd: Appropriate resources and expertise in quality, environmental protection, and information security
Ungültig:
The Clear Decisions Company Ltd ensures that quality-, environmental-, and information security-related tasks are supported by well-trained personnel, appropriate tools, and clear communication. This helps prevent errors, environmental impacts, and security incidents, ensures employee competence in handling quality, environmental, and information security requirements, and reduces misunderstandings in the implementation of related measures.
|
Chapter 7.1: Ungültig: | Fully available |
|
Chapter 7.2: Ungültig: | Fully available |
|
Chapter 7.3: Ungültig: | Fully available |
|
Chapter 7.4: Ungültig: | Fully available |
|
Chapter 7.5: Ungültig: | Fully available |

8. Operation
Compliant
The Clear Decisions Company Ltd's quality, environmental, and information security guidelines are implemented in daily operations
Ungültig:
The Clear Decisions Company Ltd consistently implements the requirements of quality, environmental, and information security management. Employees receive clear instructions for quality-conscious, environmentally responsible, and secure working practices. Processes are stable, and legal as well as contractual requirements are met. Information security risks are regularly assessed and effectively reduced through targeted measures, while an effective response to environmental emergencies is ensured.
|
Chapter 8.1: Ungültig: | Fully available |
|
Chapter 8.2: Ungültig: | Fully available |
|
Chapter 8.3: Requirements for development and the treatment of information security risks fulfilled | Fully available |
|
Chapter 8.4: Requirements for supplier management fulfilled | Fully available |
|
Chapter 8.5: Ungültig: | Fully available |
|
Chapter 8.6: Requirements for the release of products and services fulfilled | Fully available |
|
Chapter 8.7: Quality defects are identified and rectified in a structured manner | Fully available |

9. Performance measurement
Compliant
The Clear Decisions Company Ltd systematically reviews and evaluates the effectiveness of its quality, environmental, and information security management systems
Ungültig:
The Clear Decisions Company Ltd regularly assesses the quality of its processes, analyzes environmental impacts, and identifies potential risks to information security. It verifies compliance with relevant requirements in the areas of quality, environment, and information security through internal audits and summarizes the results in a structured management review. This ensures that quality, environmental, and security objectives are achieved, legal and contractual obligations are met, and all three areas are continuously improved – to the benefit of customers, partners, and the environment.
|
Chapter 9.1: Results are systematically reviewed and analyzed | Fully available |
|
Chapter 9.2: Regular internal checks and audits ensure consistent quality | Fully available |
|
Chapter 9.3: Ungültig: | Fully available |

10. Improvement
Compliant
The Clear Decisions Company Ltd
Ungültig:
The Clear Decisions Company Ltd embraces the principle of continuous improvement in the areas of quality, environmental protection, and information security by regularly reviewing and purposefully enhancing all relevant processes. This ensures that customers can rely on consistently high performance quality, sustainable use of environmental resources, and effective protection of sensitive information.
|
Chapter 10.1: Ungültig: | Fully available |
|
Chapter 10.2: Ungültig: | Fully available |
|
Chapter 10.3: Ungültig: | Fully available |

Annex A, 5
Compliant
The Clear Decisions Company Ltd implements organizational measures for information security
Ungültig:
The Clear Decisions Company Ltd has implemented comprehensive organizational measures to embed information security within the organization. These include, among others, the introduction and regular review of an information security policy, the clear definition of responsibilities, the implementation of access control procedures, as well as the classification and labeling of information. Furthermore, inventories for information and related assets are maintained, contacts with relevant authorities and stakeholder groups are upheld, and measures for information security in supplier relationships are implemented.

Annex A, 6
Compliant
The Clear Decisions Company Ltd implements personnel-related measures for information security
Ungültig:
The Clear Decisions Company Ltd has implemented extensive personnel-related measures to ensure information security. These include security screenings for new employees, the definition of responsibilities in employment contracts, as well as regular training and awareness programs on information security. Furthermore, formalized procedures such as a disciplinary process, clear responsibilities when terminating or changing employment relationships, and binding confidentiality agreements are in place. In addition, rules for secure remote work have been established and a reporting procedure for information security incidents has been introduced.

Annex A, 7
Compliant
The Clear Decisions Company Ltd implements physical measures for information security
Ungültig:
The Clear Decisions Company Ltd has implemented comprehensive physical measures to protect information and related assets. These include, among others, secured security perimeters and access controls, the physical monitoring of premises, as well as protective measures against physical and environmental threats. In addition, rules have been established for a tidy working environment, the safe operation and placement of equipment, the protection of assets outside the premises, and the secure management of storage media. Maintenance, cabling, and the secure disposal of equipment and assets are also regulated.

Annex A, 8
Compliant
The Clear Decisions Company Ltd implements technological measures for information security
Ungültig:
The Clear Decisions Company Ltd has implemented a wide range of technological measures to ensure information security. These include the protection of end devices, the management of privileged access rights, the restriction of information access, and secure authentication procedures. Furthermore, technical vulnerabilities are systematically managed, data is deleted or encrypted, and logging is performed. These measures are complemented by network and application security, the use of cryptography, and protection against malware.