Information Protection Policy
SK D&D is establishing data governance with the goal of building the IT infrastructure solutions to leap forward as a leading player in the platform business. To this end, we have formulated and implemented information protection policies and systems. We aim to mitigate cybersecurity risks by complying with international information security standards and codes of ethics, and to manage risks by improving the level of trust with external stakeholders in information security.
In 2023, we revised our Information Security Regulations to systematize information protection, and according to Article 4 of the Information Security Regulations, we have obtained approval from the Chief Information Security Officer (CISO) and disclosed it publicly. The main revisions include the application of mandatory requirements for administrative and technical control items as per the Information Security Management System (ISMS)* and changes to the operation and management of the information protection working-level group. Additionally, a cloud management guideline was established in accordance with the transition of the company's business systems to the Amazon Web Services (AWS) cloud. Our information protection policy and related regulations are posted on the groupware policy bulletin board for all employees to access and read.
In November 2023, SK D&D obtained ISMS certification for the corporate website and the ‘Episode’ website to strengthen the level of information security, while upgrading internal policies and systems. By voluntarily obtaining this certification, we have created a more secure customer service environment, and will continue to strive to improve information security and trust.