Crypto.com, the market leader in regulatory compliance, security, and privacy, made the announcement today that it has now been certified with ISO 27017 for security in the cloud and ISO 27018 for privacy protection in the cloud. This was accomplished after the platform was audited by SGS, an internationally-recognized certification authority.
The ISO 27017 and ISO 27018 certifications, both of which are the firsts of their kind for a digital asset platform, indicate Crypto.com’s emphasis on cloud service security for users and its dedication to ensuring that the personal data of users are processed in a secure manner.
Jason Lau, Chief Information Security Officer at Crypto.com, said: “Security and privacy continue to be a core focus for us, particularly as we scale our services globally through the use of cloud infrastructure. These most recent certifications are a testament to our industry leadership and continued commitment.”
Ensuring Cloud-Specific Security and Privacy
ISO 27017 is a cloud-specific security standard that outlines best practices for implementing information security controls that can be applied to the provision of cloud services as well as their usage. It assures that the certified firms are offering a cloud-based environment that is significantly secure and safe. This is done in an effort to lower the likelihood of security problems and to adhere to information security management system (ISMS) certification requirements.
The ISO 27018 standard is the first worldwide standard for protecting user privacy in cloud privacy. It provides organizations that are acting as privacy data processors and controllers with privacy-specific guidelines for enhancing information security by evaluating risks, establishing objectives, and building security controls for the purpose of protecting personally identifiable information (PII) in public clouds.
Third-party certification bodies conduct at least one audit per year on Crypto.com’s implementation of its Information Security Management System (ISMS), Privacy Information Management System (PIMS), and Business Continuity Management System (BCMS) in order to guarantee Crypto.com’s commitment to comply with multiple ISO standards.
Highest Standards for Safety, Security, and Privacy
In addition to adhering to the NIST Cybersecurity and Privacy Frameworks, Crypto.com was previously successfully accredited as the first virtual asset platform to receive ISO 27001 (Information Security Management System) certification in 2019, ISO 27701 (Privacy Information Management System) certification in 2020, and ISO 22301 (Business Continuity Management) certification in 2021.
Kris Marszalek, CEO of Crypto.com, said: “Security and privacy are foundational pillars of our commitment to our 80 million users around the world. We will continue to invest in ensuring the highest standards for safety, security, and privacy.”
Since its inception in 2016, Crypto.com has earned the trust of more than 80 million customers globally and is the market pioneer in terms of security, privacy, and regulatory compliance. The objective of the platform is straightforward: Cryptocurrency in Every Wallet™. Crypto.com is dedicated to advancing the adoption of cryptocurrencies through technology and inspiring the next generation of developers, innovators, and entrepreneurs to create a more balanced and transparent digital economy.