[2026-04-10]South Korea Overhauls ISMS-P Certification for Enhanced Data Security and Compliance

South Korea has announced a comprehensive overhaul of its ISMS and ISMS-P certification systems to prevent data breaches.
Key changes include expanded mandatory certification, risk-based standards, and enhanced audit procedures for critical data handlers.
Implementation begins in late 2024, with full mandatory requirements and strengthened criteria rolling out from 2027.

[2026-03-10]South Korea Enacts Stricter Penalties for Major Personal Data Breaches

South Korea has amended its Personal Information Protection Act to address repeated or major data breaches.
The new law imposes punitive fines up to 10% of total revenue and strengthens CEO and CPO responsibilities.
The amendments take effect September 11, 2024, with ISMS-P certification mandatory from July 1, 2025.