The information asset’s availability, integrity, confidentiality and accountability are essential to maintain DUBAI CARS security compliance, and organization image. DUBAICARS.SE acknowledges the importance of ensuring information security and is committed towards supporting the information security goals and principles. Information security is the protection of data resources against loss arising from breaches of confidentiality, integrity, and availability. It should not be seen as preventative or restrictive of business operations, but rather as an enabling mechanism for sharing information safely. Information security protects information from a wide range of threats in order to ensure business continuity, minimize business damage, and maximize return of investments and business opportunities. Information security is achieved by implementing a suitable set of controls, which could be policies, practices, procedures, organization structure, and software functions. These controls need to be established to ensure the specific security objectives of DUBAI CARS are met. The objective of the ISMS program is to protect information assets and services provided by DUBAI CARS users internally and externally, in addition to: 8 – Protect DUBAICARS.SE’s business information and any client or customer information within its custody or safekeeping by safeguarding its confidentiality, integrity and availability. – To establish safeguards to protect DUBAICARS.SE’s information resources from theft, abuse, Misuse and any form of damage. – To establish responsibility and accountability for information security in DUBAICARS.SE. – To encourage management and staff to maintain an appropriate level of awareness, knowledge and skill to allow them to minimize the occurrence and severity of information security incidents. – To ensure that DUBAI CARS is able to continue its commercial activities in the event of significant information security incidents. – To continually strengthen and improve the overall capabilities of the information security management system. – To increase professional skills in terms of information security management and technology. – To establish quantified information security goals annually through management review meetings.