Korbit Passes Post-Audit for ISMS-P and ISO Certifications
South Korean crypto exchange Korbit announced on Wednesday that it has successfully passed a post-audit to maintain its Personal Information and Information Security Management System (ISMS-P) certification and four different International Organization for Standardization (ISO) certifications — ISO 27001, ISO 27017, ISO 27018, and ISO27701.
“By maintaining our ISMS-P and ISO certifications this year, we were able to reaffirm the stability and trustworthiness of Korbit’s personal information protection capabilities and security management system,” said Oh Se-jin, CEO of Korbit.

Rigorous criteria
The ISMS-P is a security management system jointly operated by the Ministry of Science and ICT and the Personal Information Protection Commission, representing the highest level of security management in Korea. It combines 80 requirements for Information Security Management System (ISMS) certification and 22 requirements for Personal Information Management System (PIMS) certification, totaling 102 requirements that must be met. Once obtained, certification is valid for three years, and annual post-audits are required to maintain its validity.
Korbit first obtained ISMS-P certification in September of 2021 and has once again passed this year’s post-audit that was conducted last Wednesday.
Meeting international standards
In addition, the exchange had previously passed post-audits for four ISO certifications related to information protection and personal information management systems earlier in June. This includes ISO 27001 for information security management systems, ISO 27017 for information security controls on cloud services, ISO 27018 for protection of personally identifiable information (PII) in public clouds, and ISO 27701 for privacy information management systems.
This achievement demonstrates Korbit’s commitment to reliability and security when operating and managing exchange services.
“As a crypto exchange, we will continually focus on strict security management to ensure the protection of customer information and assets,” said CEO Oh.


