Information Security Policy
The Kingdom Bank Information Security Policy
The Kingdom Bank Corporation recognizes that the confidentiality, integrity, and availability of information in all forms play a critical role in sustainable success and good governance. Failure to maintain adequate information security can increase the risk of reputational and financial loss.
This policy summarizes The Kingdom Bank Corporation's information security management approach and sets out guiding principles and responsibilities for protecting information systems.
The Kingdom Bank Corporation's management undertakes to establish, implement, operate, monitor, review, maintain, and continually improve its Information Security Management System in accordance with the ISO/IEC 27001 standard, with the aim of protecting the confidentiality, integrity, and availability of information it is required to safeguard.
In providing banking services, we commit to:
- Monitor current cyber threats relevant to our activities, including emerging and previously unknown vulnerabilities, and comply with applicable contractual and legal requirements.
- Conduct activities effectively, accurately, promptly, and securely, in line with standards applicable to the sector.
- Provide the resources required for continual improvement of the Information Security Management System.
- Conduct activities with awareness of confidentiality, availability, and integrity risks affecting corporate and personal information assets belonging to the company, customers, employees, suppliers, and business partners.
- Develop information security management and awareness as part of our corporate culture.
- Prepare, implement, and test appropriate plans supporting business and service continuity.
- Assess and treat risks to information assets and processes using accepted risk-management methodologies.
- Engage with relevant specialist groups to benefit from developing technologies and sector knowledge connected with the services we provide.






