CMS earns ISO 27001:2013 certification for information security

In September 2019, CMS team began to research a plan for developing an information security management system that meets requirements of ISO/IEC 27001:2013 (ISO 27001:2013).

After two times of rigorous and synchronous review on every aspect at all departments and divisions in April 2020, CMS finally earned ISO 27001:2013 certification for information security in July 2020. Accordingly, CMS is certified to have a sufficient system of policies, processes and regulations on information security management system, focusing on 5 keys segments: IT equipment maintenance, IT support services, IT equipment for lease, IT infrastructure installation and computer building.

CMS is certified for ISO 27001:2013

The ISO 27001:2013 certification affirms that CMS is fully capable of securing its information system with a safe and secured operating environment to service business operations in the best way, enhancing competitiveness and credibility to approach clients and partners.

Not only having sufficient processes and regulations for internal information security in business activities, CMS also has full capacity of equipment and software for storage and security, in order for business operations not being interrupted. By earning ISO 27001:2013 certification, CMS is totally able to navigate and control information security by assessing, detecting and alerting the risks, as well as presenting measures for prevention, remedy and early risk handling. Thanks to that, CMS both ensures its internal operation and protects its clients and partners, thus bringing absolute satisfaction in cooperation.

The certification is granted by TUV NORD Vietnam (TUV NORD is the world's leading corporation in the field of certification for management systems and products). On the premise that its system previously earned other ISO certifications, along with its available internal capacity, CMS team itself developed the information security management system that meets requirements of ISO 27001:2013 without having to hire or spend expensive consultation costs for consulting firms and professional consultants.