Equity Bank Kenya Limited has received two International Standards Certifications – ISO 20000 and ISO 27001 on IT Service and Information Security Management Systems respectively, cementing its commitment to prioritising customer safety and satisfaction.
The two certifications were issued by the British Standards Institution (BSI).
ISO 20000 shows that the Bank’s service management system is robust enough in the delivery of all IT-related services and is also aligned with its current and future needs.
Similarly, the ISO 27001 certification offers assurance to customers that the bank is implementing end-to-end information security controls to protect, the confidentiality, integrity and availability of all customer information.
In his remarks on receiving the two certifications, Equity Group Managing Director and CEO Dr. James Mwangi noted that the recognition was a testament to the Bank’s significant investment in data analytics and cyber-security capabilities to better meet its evolving customer needs and expectations and to reduce the potential for data breaches.
“Being fully aware of the risk and impact involved in data information management, it is our commitment to actively continue engaging our stakeholders to ensure that there is appropriate governance in place.
It warrants us to be increasingly aware of our roles and responsibilities in information security and actively play our part in ensuring that the appropriate processes are followed to realize effective information technology metrics.
The evolution in regulation appropriately balances the value of giving customers control of their data, with our duty to protect customer privacy and security,” said Dr. Mwangi.
Other goals for ISO 20000 on service management include protecting revenue flow into the business by providing stable IT services, meeting the Bank’s obligations to stakeholders, including its customers, regulators, shareholders and suppliers, and lastly making IT a business enabler.
While ensuring the Bank has better defined and better-aligned services, increased visibility and control, the service management system also provides a structured framework for setting IT service management objectives, processes, and outlines responsibilities for key stakeholders.
Aligned with the service management, the information security certification ISO 27001 also protects revenue flow into the business and prevents confidential information from falling into the wrong hands. The pathway to this achievement is contained in a structured framework for setting the bank’s information security objectives as provided in the standard.
股权银行获得双重国际标准认证
肯尼亚权益银行有限公司已获得两项国际标准认证,分别是关于IT服务和信息安全管理系统的ISO 20000和ISO 27001,从而巩固了其优先考虑客户安全和满意度的承诺。
这两项认证由英国标准协会(BSI)颁发。
ISO 20000表明,银行的服务管理系统在提供所有IT相关服务方面足够强大,并且符合其当前和未来的需求。
同样,ISO 27001认证向客户保证,银行正在实施端到端信息安全控制,以保护所有客户信息的机密性、完整性和可用性。
Equity Group董事总经理兼首席执行官James Mwangi博士在接受这两项认证时指出,这一认可证明了银行在数据分析和网络安全能力方面的重大投资,以更好地满足不断变化的客户需求和期望,并降低数据泄露的可能性。
“充分意识到数据信息管理所涉及的风险和影响,我们承诺继续积极吸引利益相关者,以确保适当的治理到位。
它使我们能够越来越多地意识到我们在信息安全方面的作用和责任,并积极参与确保遵循适当的流程以实现有效的信息技术指标。
监管的演变恰当地平衡了让客户控制其数据的价值,以及我们保护客户隐私和安全的责任,”Mwangi博士说。
ISO 20000关于服务管理的其他目标包括通过提供稳定的IT服务来保护流入业务的收入,满足银行对利益相关者(包括其客户、监管机构、股东和供应商)的义务,最后使其成为业务推动者。
在确保银行有更好的定义和更一致的服务、更高的可视性和控制能力的同时,服务管理系统还提供了一个结构化框架,用于设定IT服务管理目标、流程,并概述了关键利益相关者的责任。
与服务管理相一致,信息安全认证ISO 27001还可以保护流入业务的收入,防止机密信息落入坏人之手。实现这一目标的途径包含在一个结构化框架中,该框架用于按照标准的规定设定银行的信息安全目标。
如侵联删未允勿转:认证生态网 » Equity Bank receives double International Standards Certification
最新评论
太好了,找了半天,正好在编iso9001体系文件,很有用
Iso 9001 certification, very good
2015版估计得运行几年了,都是高度概括性内容,没有重大缺陷估计一直会运行下去。
TC176这是在偷懒么?
好,收到了。
是的,是以您名义发出来的,比如很多文章显示的其他账户名。
好,加的人比较多把姓名和联系方式发我。
邮箱太麻烦了 我加微信了 通过一下 发你
投稿可以以我名义发出来么?
您好 我投了篇ISO认证的稿子 您查收下
每年更新 可不可以有变更后再更新
不用这么多吧
我们公司当初做下来好像花了两万多 听培训老师说按照人数来的
我们培训老师说iso是个蛮不错的工具 仅此而已 不过最近看 政府 议会 企业 殡葬 寺庙都在做iso认证﹉
议会做这玩意干啥
政府做iso?
政府做iso?
传说中的业绩
全球都认可iso9001:2015 看来要好好钻研钻研了
认证这个事情 还是任重道远
我认为是为了提升学校管理 尤其现在什么事情都是绩效的大环境下
来赞一个
14001做一个下来多少钱
知识产权 赞一个
学校ISO意义在哪里?最近看不止国外 国内也有学校做ISO认证。
good
是的 iso9001现在是企业蛮好用的一个工具,只要稍微有点规模的都会做。而ISO13485基本局限医疗产业,所以900
可以去看看GB/T 27925-2011这个标准
有认证业务的,只是检测比较出名。
是的 三标和三项体系认证及QEO QES都是一个东西都是指ISO9001 ISO14001 ISO45001认证。
可以请在内审员证书上加上认证生态网LOGO以后你们发的证书提交给我们就可以在cha.isooo.org查到了。
可以做的
真希望我们定的标准也能走出去
有的公司会慢半拍
45001还没换啊
哈哈
厉害了我的国
哪里怎么都有你 刚看到在ISO贴吧
有问题可跟我沟通
ISO13485