MoneyMe is committed to maintaining a robust Information Security Management System (ISMS) to safeguard the confidentiality, integrity, and availability of its information assets and systems, particularly those supporting our financial technology platform and customer data.
This statement provides an overview of the principles and commitments for management, employees, and other parties acting on behalf of MoneyMe in order to maintain effective information security capabilities and to meet the required standards necessary to safeguard our information assets and systems.
MoneyMe is committed to:
-
Comply with all applicable laws, regulations, and ASX requirements
-
Maintain an ISO 27001:2022 certified Information Security Management System (ISMS)
-
Protect customer data through appropriate technical and organisational controls
-
Ensure the integrity and security of financial transactions and customer information
-
Maintain appropriate capabilities to protect against unauthorised access, alteration, or compromise of information assets
-
Ensure that authorised users have timely and reliable access to our financial technology services
-
Promote a culture of security awareness across our organisation
-
Conduct regular security awareness training for all employees
-
Align risk assessment practices with our Enterprise Risk Management Framework
-
Implement, monitor, and review controls for identified information security risks and threats
-
Measure, review, and continuously improve our security controls and ISMS maturity
-
Provide assurance to our customers, shareholders, and regulators that information is appropriately protected
The following principles underpin this policy statement:
-
Compliance with ASIC regulatory requirements for Australian Credit License holders
-
Alignment with the Australian Privacy Principles (APPs)
-
Certification to ISO/IEC 27001:2022 Information Security Management Systems standard
-
Alignment with the Australian Government Information Security Manual (ISM)
-
Implementation of industry best practices for financial technology security
-
Regular independent security assessments and audits
Information Security Officer
MoneyMe Financial Group Ltd
Published Date: November 2024