Bizneo incorporates Artificial Intelligence (AI) into the development of its products and services, as well as into its internal operations. Aware of the impact these technologies have on individuals, clients, and society as a whole, Bizneo commits to developing, deploying, and using AI systems in a responsible, ethical, transparent, and legally compliant manner.
To this end, Bizneo manages artificial intelligence by building upon the security processes and controls already implemented within the organisation, and taking as reference frameworks the ISO 27001 standard and the National Security Framework (ENS — Esquema Nacional de Seguridad, a Spanish information security certification scheme), as well as the ISO/IEC 42001 standard for artificial intelligence, in accordance with the requirements of Regulation (EU) 2024/1689, laying down harmonised rules on artificial intelligence (hereinafter, the AI Act), with the aim of identifying, assessing, and minimising the risks associated with the use of AI and ensuring compliance with the established objectives.
The purpose of this AI Policy is to establish the reference framework applicable to the performance of functions related to artificial intelligence, and to define the principles and commitments governing the use of these technologies at Bizneo.
This Policy is appropriate to Bizneo's activities and values, and applies to all personnel of the organisation, as well as to suppliers and third parties involved in the development, deployment, or use of AI systems on behalf of Bizneo.
Bizneo conducts its AI-related activities in compliance with the applicable legal and regulatory framework. In particular, it commits to complying with Regulation (EU) 2024/1689 (AI Act), Regulation (EU) 2016/679 (GDPR), and any other applicable data protection legislation, as well as with the requirements of its Information Security Management System (ISO 27001), using ISO/IEC 42001 as a reference standard for AI management, and with any other law or regulation applicable to the use of artificial intelligence.
The use of artificial intelligence at Bizneo is governed by the following principles:
Human oversight: AI systems are designed and used under adequate human supervision, ensuring that relevant decisions can be reviewed by individuals and avoiding automatic reliance on their outputs.
Transparency and explainability: clear information is provided regarding the use of AI systems, and efforts are made to ensure their operation is understandable and traceable for those affected.
Fairness and non-discrimination: measures are adopted to prevent and mitigate biases that could lead to unfair or discriminatory outcomes.
Security and technical robustness: AI systems are developed and maintained to operate reliably, securely, and resiliently throughout their entire lifecycle.
Privacy and data governance: data used in AI systems is protected to preserve its availability, quality, security, and privacy, and is processed in accordance with data protection regulations.
Accountability and traceability: traceability and accountability are maintained for actions supported by or based on AI systems.
Bizneo identifies, assesses, and addresses the risks associated with the use of artificial intelligence, taking into account their potential impact on the rights, safety, and interests of the individuals concerned. This analysis is reviewed periodically and whenever significant changes occur in the AI systems, the data processed, or the applicable regulatory framework.
Data used in AI systems is managed in a manner that preserves its availability, quality, security, and privacy. Bizneo also ensures that AI systems maintain adequate performance and are properly maintained throughout their entire lifecycle.
Bizneo ensures that individuals involved in the management of AI systems possess the necessary skills, training, and experience. To this end, it promotes awareness-raising and continuous training activities appropriate to the functions performed.
Bizneo establishes the necessary procedures to implement this Policy and to ensure that both the applicable legal requirements and the business requirements related to artificial intelligence are met.
Bizneo commits to implementing, maintaining, and continuously improving its Information Security Management System (ISMS) and, in particular, the processes within it related to artificial intelligence, adapting them at all times to the state of the organisation, its values, and the evolution of the regulatory and technological framework.
This AI Policy will be available as documented information and will be communicated within the organisation. It will be distributed to all personnel for their awareness and will be made available to relevant interested parties where appropriate.
This Policy will be reviewed on a continuous and planned basis, at least annually or earlier if significant changes occur in Bizneo's operational, technological, or regulatory environment. Management commits to keeping it aligned with the company's general policies and other internal management systems.
Madrid, 15 June 2026
Santiago Salas CEO, Bizneo