Data protection at MariApps is not a policy on paper. It is a certified, actively maintained commitment that runs through every system, team, and client relationship through an Information Security Management System (ISMS).
Our Foundation
Built on an ISMS and the CIA Triad
MariApps operates an Information Security Management System (ISMS), a certified information security framework of policies, procedures, and controls that governs how every piece of information is handled across the organization. At its core sit three principles that are non-negotiable in everything the company does.
The CIA Triad is not an abstract concept here. It is the operational baseline for every access decision, system design, and client interaction across all MariApps offices and platforms.
Confidentiality
Sensitive information reaches only the people authorized to access it, enforced through role-based access controls and multi-layer authentication.
Integrity
Data remains accurate and unaltered except through authorized processes, secured by audit trails, encryption, and validated workflows.
Availability
Authorized users get access to what they need, when they need it, backed by continuous monitoring and tested incident response plans.
”We embed data protection into our governance and operational processes because accountability isn't a department; it's everyone's responsibility.
Thomas John · Data Protection Officer
How We Protect
Data Security and Cybersecurity
Two disciplines, one goal: keeping your information safe. Data Security protects the information itself through comprehensive data protection practices, whether at rest, in transit, or in active use. Cybersecurity defends the systems and networks that information moves through using an enterprise cybersecurity framework. MariApps operates both in parallel, under a unified ISO 27001-aligned framework.
Data Security
Protecting digital and physical information
- Access control and authentication mechanisms
- Secure storage and encrypted transmission
- Regular risk assessments and internal audits
- Clearly defined policies and responsibilities
Cybersecurity
Defending systems, networks, and applications
- Threat identification and risk assessment
- Secure IT infrastructure and layered controls
- Incident response and escalation procedures
- Continuous monitoring and security awareness training
Compliance
Regulatory Alignment as a Differentiator
The controls implemented at MariApps to align with international information security standards are not a minimum requirement. They are a differentiator, reinforcing the company’s commitment to quality, data privacy, and information security. These measures enable MariApps to maintain GDPR compliance and other applicable data protection regulations, while ensuring the highest standards of trust, transparency, and operational integrity for clients.
For clients operating in the maritime industry, where data flows across jurisdictions and regulatory expectations continue to evolve, working with a software partner whose information security compliance framework is both certified and actively maintained is a practical advantage.
What Sets Us Apart
Reasons to Trust MariApps with Your Data
Security certifications are only as strong as the culture behind them. Here is what makes MariApps’ approach different:
Standards-Driven
Every control aligns with ISO 27001, 27701, and 9001, ensuring compliance with key cybersecurity requirements as well as data protection laws such as GDPR.
Certified Auditors | Client Centric
Certified auditors and trainers ensure that implementation is practical, transparent, audit-ready, and accountable.
Organization-Wide Training
Every employee is trained, not just the IT team. Security awareness is a company-wide culture at MariApps.
Risk-Based Framework
Controls are tailored to real business risk profiles, not applied from generic templates.
Continuous Improvement
Regular audits and reviews ensure the framework evolves as both threats and regulatory expectations evolve.
Privacy by Design
Data privacy is engineered into every system and process from the ground up, not added as an afterthought.
Our People
The Team Behind the Commitment
Data protection and enterprise information security are only as strong as the people who own it. MariApps’ security function is led by certified professionals with deep regulatory and technical expertise, supported by a dedicated information security governance team that keeps the framework current, practical, and audit-ready every day.
Thomas John
DPO
Data Protection Officer
Arun Krishnan
CISO
Chief Information Security Officer
Sreeja K.S.
Governance
Governance Team
Vishnu C.V.
Governance
Governance Team






























