Information Security Policy -“Integrating IT and risk management mechanisms to safeguard group competitiveness and sustainable operations.”


The Company has been certified under the ISO/IEC 27001:2013 Information Security Management System (ISMS) since 2014, and successfully completed the transition to the updated ISO/IEC 27001:2022 standard in 2025. To ensure the uninterrupted operation of global information services, we continuously strengthen and improve our ISMS to effectively mitigates risks including the unauthorized alteration, disclosure, destruction, or loss of business information arising from intentional or accidental internal or external threats.


Information Security Objectives

  • Quality: Ensure the accuracy and completeness of information to enhance administrative efficiency and service quality.
  • Availability: Ensure the availability of information systems and IT infrastructure to support continuous business operations.
  • Privacy: Safeguard trade secrets and protect the privacy of all stakeholders.
  • Security: Comply with applicable laws and regulations and international security standards to ensure business continuity.


Our Implementation Policies

  • Foster information security awareness, responsibility, and accountability among all employees, subsidiaries, joint ventures, suppliers, and contractors.
  • Conduct comprehensive information security and cybersecurity training programs to ensure all personnel understand information security principles and fulfill their individual responsibilities.
  • Proactively require suppliers and contractors to comply with Yang Ming's Information Security Policy. The Company's Supplier Code of Conduct also specifies cybersecurity requirements that all suppliers conducting business with the Company are required to comply with.
 
Yang Ming has been certified with ISO/IEC 27001:2013 “Information Security Management System” since 2014 and has successfully transitioned to and obtained certification under the ISO/IEC 27001:2022 standard.


 

Certifications 

  • ISO-IEC_27001-ENG-39022-2008-AIS-RGC-RvA-4-20251001_page-0001

    ISO/IEC 27001:2022

We are committed to protecting your personal data and providing you with access to your personal data in accordance with the personal data protection laws in force in the European Union.
By clicking "Accept All", you are giving us permission to place cookies to enhance your experience on this website, to help us analyze site performance and usage, and to allow us to deliver relevant marketing content. You can manage your cookie settings below. By clicking "Confirm" you agree to the current settings.

Privacy preferences

We are committed to protecting your personal data and providing you with access to your personal data in accordance with the personal data protection laws in force in the European Union.
By clicking "Accept All", you are giving us permission to place cookies to enhance your experience on this website, to help us analyze site performance and usage, and to allow us to deliver relevant marketing content. You can manage your cookie settings below. By clicking "Confirm" you agree to the current settings.

Manage preferences

Necessary cookie

Always on
網站運行離不開這些 Cookie 且您不能在系統中將其關閉。通常僅根據您所做出的操作(即服務請求)來設置這些 Cookie,如設置隱私偏好、登錄或填充表格。您可以將您的瀏覽器設置為阻止或向您提示這些 Cookie,但可能會導致某些網站功能無法工作。