Empowerment and Accountability

MERRY's highest governance body is the Board of Directors. The current Board comprises nine members: six Directors and three Independent Directors. All are distinguished professionals with extensive industry experience, elected by the annual general meeting of shareholders on June 15, 2022, for a term of three years. The Board of Directors operates in compliance with the "Board Meeting Rules of Procedure", holding meetings at least once per quarter. In 2024, a total of 6 Board of Directors meetings were convened. All Board of Directors members uphold a high degree of self-discipline; should a proposal involve individual interests, they shall recuse themselves from voting in accordance with the conflict of interest avoidance system stipulated in Merry's "Board Meeting Rules of Procedure".
01
Continue to implement Anti-Corruption, Anti- Bribery, and Anti-Money Laundering Policy,
02
Taiwan HQ Obtained ISO 27001:2022 Certification
03
No major cybersecurity incidents have occurred.
04
100% compliance with tax laws and regulations in all operational jurisdictions, with no material tax violations
Information Security Management

Information Security Promotion Team Structure 

To enhance the group's information security and corporate competitiveness, the "Information Security Promotion Team" was established in 2021, reporting to the Sustainability and Nomination Committee under the Board of Directors. The team is chaired by the Chief Information Officer (CIO) at the Vice General Manager level, who concurrently serves as the Chief Information Security Officer (CISO). Information security experts from across the group serve as team members, responsible for reviewing and formulating Information Security objectives and policies to prevent incidents that could compromise the group's information systems. Centering on information security and sensitive data protection is fundamental to the company's competitiveness and represents Merry Electronics' commitment to its customers, shareholders, and employees. Operational outcomes are reported annually to the Board of Directors and the Sustainability and Nomination Committee; a report was made to the Board of Directors on 12/2 6, 2024.

 圖片3

Key Aspects of Information Security Management

Management System and Certification Achievements 

Taiwan Headquarters obtained its ISO 27001 Information Security Management System (ISMS) certification in 2021. Following the designation of 2022 as the foundational year for information security and the initiation of short-term, mid-term, and long-term information security plans, MECL and MEVN subsequently obtained ISO 27001:2013 certifications in 2022 and 2023, respectively. Taiwan Headquarters also successfully completed the ISO 27001 transition audit in December 2024, securing the latest ISO 27001:2022 certification. Future plans include promoting the implementation of information security management systems at overseas facilities. and actively promotes security certification mechanisms for various group entities, implementing the core philosophy of "strengthening information security and ensuring sustainable operations".

 

Information Security Protection Technologies and Innovative Applications

To enhance information security monitoring and threat detection capabilities, Merry Electronics evaluated in 2024 the implementation of an Information Security Incident and Event Management (SIEM) platform. This platform will integrate logs from diverse information security devices and system event data to establish comprehensive threat detection and real-time alerting mechanisms, thereby improving the information security team's response efficiency to potential threats. In response to the increasing complexity of information security threats, Merry Electronics is actively researching and considering the implementation of AI-driven information security applications, including: [Machine learning-based anomaly behavior analysis], [Auto[1]mated threat intelligence analysis], [Predictive defense mechanisms]. Furthermore, MER[1]RY Electronics will plan for the in-house development of an AI cybersecurity bot, utilizing large language model technology combined with the company's proprietary cybersecurity knowledge base, to provide employees with 24/7 uninterrupted cybersecurity advisory services. This AI chatbot not only provides real-time and precise responses to daily information security operational inquiries but also effectively identifies employees' information security knowledge gaps and offers customized recommendations, thus becoming a crucial cornerstone for strengthening the corporate information security culture and an innovative highlight of the company's Digital Transformation and Information Security Governance.

 

Comprehensive Information Security Management Mechanism

The management procedures and security protection technologies for information security are applicable to all information operations. In the processes of information collection, processing, transmission, storage, and circulation, they ensure the confidentiality, integrity, and availability of information assets. Furthermore, they strengthen response capabilities to information security incidents by establishing operational procedures to mitigate or eliminate damages caused by such incidents and prevent future potential Information Security Incidents. Emphasis is also placed on enhancing proactive information security defense operations and the transformation and establishment of digitized information security, thereby achieving the protection of company, customer, supplier data, and personal data. Additionally, regular promotion and enhancement of information security awareness among all personnel are conducted to reduce human-induced information security risks.

 

Regular Evaluation and Continuous Improvement

Under the operation of the Information Security Management System, Merry Electronics regularly conducts [Business Impact Risk Assessments], [Internal Information Security Audits], and [Business Continuity Plan Exercises]. These measures ensure the continuous and effective operation of the Information Security Risk Management System. No major information security incidents occurred in 2024, demonstrating the effectiveness of existing protection mechanisms.

090424

Back

Verification

Click the numbers in sequence.

依據歐盟施行的個人資料保護法,我們致力於保護您的個人資料並提供您對個人資料的掌握。
按一下「全部接受」,代表您允許我們置放 Cookie 來提升您在本網站上的使用體驗、協助我們分析網站效能和使用狀況,以及讓我們投放相關聯的行銷內容。您可以在下方管理 Cookie 設定。 按一下「確認」即代表您同意採用目前的設定。

Privacy preferences

依據歐盟施行的個人資料保護法,我們致力於保護您的個人資料並提供您對個人資料的掌握。
按一下「全部接受」,代表您允許我們置放 Cookie 來提升您在本網站上的使用體驗、協助我們分析網站效能和使用狀況,以及讓我們投放相關聯的行銷內容。您可以在下方管理 Cookie 設定。 按一下「確認」即代表您同意採用目前的設定。

Manage preferences

Necessary cookie

Always on
網站運行離不開這些 Cookie 且您不能在系統中將其關閉。通常僅根據您所做出的操作(即服務請求)來設置這些 Cookie,如設置隱私偏好、登錄或填充表格。您可以將您的瀏覽器設置為阻止或向您提示這些 Cookie,但可能會導致某些網站功能無法工作。

Functional cookie

這些 Cookie 允許提供增強功能和個性化內容,如視頻和實時聊天。我們或我們已將其服務添加至我們頁面上的第三方提供者可以進行設置。如果您不允許使用這些 Cookie,則可能無法實現部分或全部功能的正常工作