Seguridad De La Información

SEGURIDAD DE LA INFORMACIÓN / CIBERSEGURIDAD

La ciberseguridad es crucial para garantizar la continuidad del negocio, proteger los activos digitales y mantener la estabilidad y la confianza de nuestros interesados/as. Contamos con una Política de Seguridad de la Información que establece pautas de conducta y comportamiento para todos los empleados/as, contratistas, consultores, personal temporal y personal afiliado.

El Gerente de TI de Canacol es responsable de la implementación de la estrategia de seguridad de TI y ciberseguridad, y reporta directamente al CEO. Además, el Comité de Auditoría es responsable de supervisar la seguridad de TI y recibe regularmente actualizaciones de seguridad, incluidas discusiones detalladas sobre temas clave.

Desde 2022, Canacol ha establecido un sistema de gestión de seguridad de la información implementando medidas efectivas de ciberseguridad basadas en la norma ISO 27,001.

Las múltiples capas de protección distribuidas por toda la empresa han permitido al equipo de TI mantener los datos de la compañía seguros y no se han producido incidentes importantes. La evaluación de riesgos de ciberseguridad se realiza de manera regular para gestionar los riesgos actuales e identificar nuevos, ya que los atacantes evolucionan rápidamente y se vuelven más innovadores.

Acompañado de la tecnología y el programa de concienciación sobre seguridad, Canacol ha establecido una cultura de ciberseguridad liderada a nivel ejecutivo. De esta manera, la seguridad de la información/ciberseguridad está vinculada a la evaluación anual del desempeño de los empleados/as.

Double Materiality

At Canacol, we understand that sustainability is inseparable from responsible business management. That is why we have adopted the double materiality approach as a key tool to identify, prioritize, and manage issues that not only impact the environment and our stakeholders, but can also significantly influence the financial and operational resilience of our company.
This analysis allows us to connect our corporate strategy with environmental, social, and governance (ESG) challenges and opportunities, strengthening our ability to create long-term value and deliver concrete results that reinforce our commitment to a just and responsible energy transition.
 

What is Double Materiality?

Double materiality is a comprehensive approach that assesses sustainability from two key dimensions:

  • Impact materiality: Evaluates how Canacol’s activities affect the environment, society, and the economy. This includes topics such as climate change, water use, biodiversity, and human rights.
  • Financial materiality: Examines how ESG factors may pose risks or create opportunities for the business, affecting its finances, reputation, operations, and access to capital.

This approach is aligned with international frameworks such as the Corporate Sustainability Reporting Directive (CSRD), the European Sustainability Reporting Standards (ESRS), and the Task Force on Climate-related Financial Disclosures (TCFD), enhancing both transparency and strategic management.
 

Why is it Key for Canacol?

For Canacol, double materiality is not just a regulatory requirement—it is an essential tool to strengthen long-term resilience and competitiveness.
Through this biennial analysis, we identify the issues that matter most to our stakeholders and those that could significantly affect our business performance. This perspective enables us to:

  • Improve strategic decision-making.
  • Anticipate and manage ESG risks.
  • Align our sustainability goals with corporate value.
  • Reinforce our position as a global leader in a responsible energy transition.
     

Implementation

The double materiality analysis is part of Canacol’s integrated risk management system and is carried out through structured stages, in line with international best practices:

  1. Identification of relevant topics: Using frameworks such as GRI, TCFD, and ESRS, we identify key ESG topics for our sector and operational context.
  2. Stakeholder consultation: We conduct surveys, workshops, and interviews with employees, communities, investors, regulators, and other actors to understand their priorities and concerns.
  3. Impact and risk assessment: We analyze the magnitude and likelihood of Canacol’s impacts on the environment, as well as the potential financial effects of ESG risks on our business.
  4. Development of the double materiality matrix: We visualize the results in a matrix that reflects both the importance of each topic to stakeholders and its potential financial impact on the company.

We conduct quarterly follow-ups on the risks and opportunities associated with the Company’s material topics.
 

Definition of Material Topics

Canacol has identified 14 key material topics which guide the Company’s sustainability strategy. These are organized as follows:

 

For more information on our double materiality analysis, please visit the following link: Double Materiality Analysis 2024