Information Security at Y Soft Corporation
At Y Soft, we take technical and organizational measures to uphold security and mitigate risk.
Information Security Policy
1. Purpose and Scope
-
All employees, contractors, and relevant third parties,
-
All information processed, stored, or transmitted by Y Soft Corporation,
-
All business activities, products, and services, with a particular focus on cloud‑based solutions.
2. Management Commitment
-
Establishing, implementing, maintaining, and continually improving the ISMS in accordance with ISO/IEC 27001,
-
Reinforcing information security objectives in alignment with business goals,
-
Providing the necessary resources to drive effective information security management.
3. Information Security Objectives
-
Support business continuity and service reliability,
-
Reduce the likelihood and impact of information security incidents,
-
Protect customer and partner information,
-
Ensure compliance with applicable legal, regulatory, and contractual requirements.
4. Risk‑Based Approach
-
Identified, analyzed, and evaluated based on potential impact and likelihood,
-
Treated through appropriate technical and organizational controls,
-
Reviewed regularly to reflect changes in business, technology, or threat landscape.
5. Compliance and Legal Requirements
-
Legal and regulatory requirements (including data protection and privacy laws),
-
Contractual obligations,
-
Recognized information security standards and codes of practice.
6. Roles and Responsibilities
-
Overall governance and accountability for information security are assigned by top management
-
Security roles may be performed by internal employees or qualified external service providers
-
All employees are required to act in accordance with this policy and supplementary security rules
7. Awareness and Continuous Improvement
-
Continuous monitoring and measurement
-
Internal and management reviews
-
Corrective and improvement actions to enhance effectiveness and resilience
8. Policy Review and Communication
-
Approved by top management
-
Communicated to all employees and made available to relevant interested parties
-
Reviewed at planned intervals and upon significant organizational or environmental changes to ensure its continued suitability
Learn More About How Y Soft Mitigates Risky Business
Layered Cloud Security
At Y Soft, we ensure multi-layered security and compliance with protective standards to safeguard your business operations.
Online Trust Center
We continuously monitor our security posture and share up-to-date security details to enhance your confidence in us.
Security Whitepaper
Gain insights from our security whitepaper on the effective strategies we use to safeguard your data and minimize risks.
Incident Management & Response Team
Y Soft has a complete Incident Management and Major Incident Management Procedure in place to mitigate any potential risk or security breach.

