<HORSENET (KOREA) Co., Ltd.> ('HORSENET') takes technical, administrative and physical measures necessary to ensure safety as follows in accordance with Article 29 of the Personal Information Protection Act.
1. Conduct regular self-audit
We conduct our own audits on a regular basis (quarterly) to ensure the safety of handling personal information.
2. Minimization and training of personnel handling personal information
We are implementing measures to manage personal information by designating employees who handle personal information and minimizing them by limiting them to the person in charge.
3. Establishment and implementation of an internal management plan
We have established and implemented an internal management plan for safe handling of personal information.
4. Technical measures against hacking, etc.
<HORSENET (KOREA) Co., Ltd.>('HORSENET') installs a security program to prevent leakage and damage of personal information by hacking or computer viruses, and performs periodic updates and inspections, and installs the system in an area where access is controlled from outside. It is installed and technically/physically monitored and blocked.
5. Encryption of personal information
For important data, separate security functions such as encrypting files and transmission data or using the file lock function are used.
6. Storage of access records and prevention of forgery
The records of access to the personal information processing system are kept and managed for at least 6 months, and the security function is used to prevent forgery, theft, and loss of access records.
7. Restriction of access to personal information
Necessary measures are taken to control access to personal information by granting, changing, and canceling access rights to the database system that processes personal information, and unauthorized access from outside is controlled using an intrusion prevention system.
8. Use of locking device for document security
Documents containing personal information and auxiliary storage media are stored in a safe place with a lock.
9. Access control for unauthorized persons
A separate physical storage place where personal information is stored is established and access control procedures are established and operated.