Information security, privacy, and AI

Respond to information security, personal-data, cloud-service, and AI-governance needs with verifiable management and risk controls.

Common questions

  • How should information security and sustainability supply-chain data be managed together?
  • How should personal-data, cloud, and AI risks be governed across teams?
  • What evidence should be prepared for international customer security requirements?

Related standards and frameworks

Related articles

View all articles
Semiconductor industry

Startrust: How Semiconductor Manufacturers Build Security into Their Architecture Across Three Dimensions

An Economic Daily report on how Startrust plans a sustainable supplier performance management system for the semiconductor industry through three dimensions: preventing internal data leakage, defending against external attacks, and translating compliance into management rules.

Sustainable supply chain and human rightsInformation security, privacy, and AIRBA+5
Comparison guide

What are the differences between personal information law, GDPR and ISO/IEC 27701?

Compare legal obligations and management systems, explain how companies can use systems to support compliance with laws, but cannot replace legal responsibilities with obtaining standards, and sort out the actual preparation, division of labor, and management priorities of companies.

Information security, privacy, and AIPersonal Data Protection ActGDPR+2
Regulatory analysis

What is GDPR? Under what circumstances may Taiwanese companies be affected?

Explain extraterritorial application, data subject rights, legal basis, processor management and cross-border transmission, avoid simplifying GDPR into website cookie regulations, and sort out the actual preparation, division of labor and management priorities of enterprises.

Information security, privacy, and AIGDPRinformation security