Quality and Information Security policy
Effective date: 22 July, 2026; Last revision: 22 July, 2026
1. Introduction
MySchool Ltd. designs, develops, and operates a full-featured, cloud-based School Management System for K-12 schools and higher education organisations.
This policy sets out MySchool’s commitment to quality management and information security, aligned with the requirements of our Integrated Management System (IMS) operating under:
- MSA EN ISO 9001:2015 — Quality Management System
- EN ISO/IEC 27001:2022 — Information Security Management System
2. Scope
This policy applies to all MySchool Ltd. operations, systems, personnel, and third-party processors involved in the design, development, hosting, and support of MySchool’s SIS platform and associated services.
3. Quality Management Commitments (ISO 9001)
MySchool is committed to consistently delivering software and services that meet or exceed the requirements of our clients. Specifically, we commit to:
Customer-Centric Development
- Understanding the evolving needs of schools and translating them into reliable, high-quality product releases.
- Maintaining quality consistency across each product release, minimising downtime and errors that could affect school operations.
- Embedding security and quality into every stage of the software development lifecycle.
Customer Satisfaction
- Engaging regularly with clients to understand satisfaction levels, gather feedback, and act on it.
- Measuring satisfaction through defined KPIs including support response times, resolution rates, and client retention.
- Providing comprehensive onboarding, training, and self-service resources to enable users to get the most from the platform.
- Upholding clear Service Level Agreements and reporting performance against them transparently.
Continuous Improvement
- Operating a feedback-driven development cycle in which client input shapes product priorities.
- Conducting post-implementation reviews after major releases to assess quality and identify areas for improvement.
4. Information Security Commitments (ISO/IEC 27001)
MySchool adopts an Information Security Management System (ISMS) aligned with ISO/IEC 27001:2022. We are committed to protecting the confidentiality, integrity, and availability of all information assets entrusted to us by our clients, employees, and partners.
Risk-Based Security
- Applying a proactive, risk management approach to identify and address information security threats before they materialise.
- Implementing appropriate technical and organisational controls to safeguard against unauthorised access, theft, misuse, and damage.
Platform Availability & Resilience
- Targeting 99.9% platform uptime and maintaining robust disaster recovery and business continuity plans.
- Communicating with clients promptly and transparently in the event of a security incident or service disruption.
Data Privacy & Legal Compliance
- Complying with all applicable legal and regulatory requirements, including the EU General Data Protection Regulation (GDPR).
- Ensuring that all data processed on behalf of schools is handled with the highest level of care and in accordance with agreed data processing agreements.
People & Culture
- Investing in the continuous professional development of all staff in information security awareness and best practice.
- Embedding a culture of trust, integrity, and responsibility across the organisation.
Continual Improvement
- Continually strengthening the ISMS through regular internal reviews, audits, and management oversight.
5. Management Commitment
This policy has been approved by the Managing Director of MySchool Ltd. and reflects the organisation’s strategic direction. It is reviewed annually or following any significant change to the organisation’s operations, risk profile, or regulatory environment.
All MySchool personnel are required to understand and comply with this policy. Supporting procedures and controls are maintained in MySchool’s internal management documentation.
Patrice Peyre
Managing Director, MySchool Ltd.
June 2026
Company registration number: C94463
Address: 9B Midland Warehousing Parks,
Triq il‑Burmarrad, Naxxar
NXR 6345, Malta