27 May 2025

Suprema, a pioneer in AI-powered access control and security solutions, announced the successful renewal of both ISO/IEC 27001 (Information Security Management System) and ISO/IEC 27701 (Privacy Information Management System) certifications.

The renewal was completed under the latest revision, ISO/IEC 27001:2022, which introduces enhanced requirements to address evolving security threats and the increasing complexity of digital environments shaped by cloud and AI technologies.

Security challenges 

Suprema holds the ‘CSA STAR’ certificate, a recognised standard for cloud security operated by CSA

By aligning with this updated standard, Suprema has strengthened its ability to respond to rapidly changing security challenges and to deliver even more reliable protection for its global customers.

In addition, Suprema holds the ‘CSA STAR’ certification, a globally recognised standard for cloud security operated by the Cloud Security Alliance (CSA). This certification is granted only to organisations that meet the rigorous requirements of ISO/IEC 27001, further validating Suprema’s global-level security reliability in cloud environments.

Data security and privacy protection

Suprema implements the ISO/IEC 27001 and 27701 standards across every phase of its operations, from product design and development to deployment and service delivery. Suprema also continues to invest in research and development to enhance capabilities in data security and privacy protection. 

Achieving these international certifications demonstrates that Suprema’s security measures such as data governance, encryption, and data anonymisation comply with the stringent criteria outlined by the European Union’s General Data Protection Regulation (GDPR), reinforcing its strong data protection capabilities on a global scale.

Information security and privacy management systems

Suprema has successfully maintained its certifications through annual surveillance audits

ISO/IEC 27001 and ISO/IEC 27701 are the most authoritative and internationally recognised standards for information security and privacy management systems, established by the International Organisation for Standardisation (ISO) and the International Electrotechnical Commission (IEC). 

These certifications are valid for three years after issuance. Since first acquiring them in 2019, Suprema has successfully maintained its certifications through annual surveillance audits and has once again renewed them.

Security management framework

Global markets are demanding increasingly sophisticated security standards, particularly as transformative technologies like cloud and artificial intelligence continue to reshape the security landscape,” said Hanchul Kim, CEO of Suprema Inc.

Suprema has responded to these changes by strengthening and systematically operating its company-wide security management framework. We will continue to invest in and expand our global data protection capabilities, including maintaining compliance with ISO/IEC 27001:2022 and 27701.”