Toss Payments Obtains International Standard Information Security Certification ‘ISO/IEC 27001’ View original image


[Asia Economy Reporter Kiho Sung] Toss's paytech affiliate Toss Payments announced on the 23rd that it has obtained the international standard information security certification 'ISO/IEC 27001.'


Having previously acquired the Payment Card Industry Data Security Standard (PCI-DSS) and Information Security Management System (ISMS) certifications, Toss Payments has now received the 'ISO/IEC 27001,' gaining recognition for its ability to operate an information security management system with major domestic and international information security certifications.


'ISO/IEC 27001' is the most prestigious international standard information security certification operated by the International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC). Certification is granted only after passing a rigorous audit based on 114 control criteria across 14 areas, including information security policies, physical security, and information access control. Toss Payments obtained this certification independently without external consulting.



Kim Seunghyun, Chief Information Security Officer (CISO) of Toss Payments, stated, "Toss Payments continues to invest in both physical and human resources to provide safe payment services to both merchants and consumers. In 2022, we plan to additionally acquire certification in the personal information protection sector."


This content was produced with the assistance of AI translation services.

© The Asia Business Daily(www.asiae.co.kr). All rights reserved.

Today’s Briefing