+380 (97) 332-02-00

Company Policy

REGULATIONS

on security policy, risk management and procedures for dealing with crisis situations

Smart Grid Ltd

1. General Provisions

Smart GRID Ltd adheres to the principles of security, accountability, transparency and sustainable management in all its activities. The company’s policy is aimed at protecting employees, customers, partners, information resources and company property, as well as ensuring a timely response to incidents and crisis situations.

This company policy is based on the requirements of current Ukrainian legislation and national standards:

– DSTU ISO 14001:2015 ‘Environmental management systems. Requirements and guidance for use’;

– DSTU ISO 28000:2008 ‘Supply chain security management systems. Requirements’;

– DSTU ISO 45001:2019 ‘Occupational health and safety management systems. Requirements and guidance for use’;

– DSTU ISO 50001:2020 ‘Energy management systems. Requirements and guidance for use’;

– DSTU ISO/IEC 27001:2023 ‘Information security management systems. Requirements’.

The company holds valid certificates of conformity to the above standards and applies their requirements in its day-to-day operations.

The company also adopts an approach based on international best practice, including recommendations from international organisations that comply with ISO standards.

2. Security Management and Decision-Making

Smart Grid Ltd’s security management system is designed to protect employees, assets, information and the continuity of business processes.

Responsible Person

Ultimate responsibility for decision-making in the field of safety, and for responding to incidents and crisis situations, lies with:

Director of Smart Grid LLC

Dmytro Volodymyrovych Rozhelyuk

In the event of emergencies:

  • makes operational and strategic decisions;
  • monitors compliance with DSTU requirements and internal procedures;
  • coordinates the actions of staff and contractors;
  • engages external services (emergency, technical, insurance) as required;
  • initiates internal investigations and corrective actions.

3. Personal safety of staff

The company gives priority to the personal safety of employees whilst performing their duties.

Procedure:

  • ensuring safe working conditions;
  • conducting briefings and training;
  • providing personal protective equipment;
  • insuring employees against accidents;
  • responding promptly to threats to life and health.

4. Risk Management for the Organisation and Employees

The company adopts a risk-based approach to safety management, covering operational, technical, information, logistical, environmental and reputational risks, as well as risks to the life and health of employees.

Procedure:

  • identifying potential threats to staff and the organisation;
  • assessing the likelihood and consequences of risks;
  • determining the acceptable level of risk;
  • implementing preventive and corrective measures;
  • regularly reviewing risks.

5. Communication channels and contact with the company

Official contact details for communication and reporting

The following channels are used for enquiries, consultations and incident reports:

Telephone:

+38 (067) 426 33 10

Email:

smartgridsllc@gmail.com

Enquiries relating to safety, incidents or emergencies are dealt with as a matter of priority, regardless of working hours.

The company guarantees the confidentiality of information received through these channels.

6. Reporting, recording and investigating incidents

6.1. What constitutes an incident

An incident is defined as any event that may lead to, or has led to:

  • personal injury;
  • damage to equipment or property;
  • work stoppages;
  • information leaks;
  • threats to life, health or safety.

6.2. Reporting procedure

Every employee or contractor is obliged to report an incident immediately via the company’s official communication channels.

The report must include:

  • the date and time of the event;
  • the location of the incident;
  • a brief description of the circumstances;
  • possible consequences;
  • the contact details of the person reporting the incident.

6.3. Incident recording

The company maintains an internal incident register, which records:

  • the date and description of the incident;
  • the results of the root cause analysis;
  • the corrective actions taken;
  • the persons responsible.

The register is maintained and updated under the supervision of the company’s management.

7. Information Security

Smart Grid Ltd applies the principles of information security management in accordance with the ISO/IEC 27001 standard.

Key provisions:

  • information is categorised by access levels and confidentiality;
  • access to information resources is granted only to authorised persons;
  • unauthorised copying, transfer or storage of data is prohibited;
  • in the event of a suspected information leak, an internal investigation is carried out immediately.

8. Health and Safety, Safety Procedures and Insurance

8.1. Training and Briefings

The company provides:

  • initial and refresher health and safety briefings;
  • training on safety procedures when operating equipment;
  • briefings on fire safety and emergency procedures.

Training is conducted regularly and recorded in internal documentation.

8.2. Insurance

Employees involved in technical, installation or field work are provided with insurance cover in accordance with applicable legislation and the company’s internal policies.

9. Final Provisions

The company’s policy is reviewed:

  • in the event of changes to legislation;
  • following incidents or crisis situations;
  • as part of the scheduled update of internal procedures.

Smart Grid Ltd. strives to continuously improve safety standards and accountability in its operations.

These Regulations are binding on all employees of Smart Grid Ltd.