Tving to Pay Up to 3 Million Won Per Customer in Hacking Compensation; Security Investment to Quadruple — BigGo Finance | #hacking | #cybersecurity | #infosec | #comptia | #pentest | #hacker


Tving is rolling out a relief insurance program that compensates customers affected by the cyber breach up to 3 million won (approximately $2,200) per person. Information security investment will be increased roughly fourfold by 2030 compared to the previous five years, and the security workforce will be tripled over the next five years.

The company held a press briefing on the 3rd at the Koreana Hotel in Gwanghwamun, Seoul, where it announced customer compensation plans and mid-to-long-term information security reform measures. Choi Joo-hee, CEO of Tving, said, “I sincerely apologize for the great concern and anxiety this breach has caused our customers,” adding, “We will humbly accept the final findings of the Public-Private Joint Investigation Team and responsibly implement corrective actions and recurrence prevention measures for all issues identified.”

The customer compensation package consists of four components: hacking and phishing relief insurance, a premium-tier viewing experience upgrade, Tving points, and entertainment coupons.

The relief insurance is provided for one year and covers not only cyber financial fraud stemming from hacking and phishing but also internet shopping mall fraud and person-to-person direct transaction scams. The viewing experience will be automatically upgraded to premium tier without a separate application, and 5,000 won (approximately $3.70) worth of Tving points (50p) usable for individual purchases of the latest movies will also be provided. Customers can additionally choose between a one-month Wavve AVOD pass (5,500 won) or a 5,000 won discount coupon for CGV combo sets.

Compensation applications will be accepted from September 7 to 30, with benefits taking effect on October 6. Applications will not be accepted after September 30. Customers can apply through the official Tving app and website.

Alongside compensation, the company is undertaking a sweeping overhaul of its security framework. Tving is pursuing four key strategies: expanding information security investment and security personnel, rebuilding a Zero Trust-based security architecture, reestablishing organizational governance and security culture, and strengthening expertise through external collaboration.

First, information security investment will be expanded approximately fourfold by 2030 compared to the previous five years to strengthen in-house security capabilities. The security organization will be subdivided into product security, cloud security, enterprise-wide IT security, and compliance security functions, with specialized personnel tripled over the next five years.

The fundamental security principle will shift to Zero Trust. The company will replace its authentication and access control methods with an enterprise-wide security standard system that verifies at every stage, and will build a framework where permissions are granted only within the necessary scope based on job function and purpose, centered on the principle of least privilege. System and network domains will be segmented and isolated to prevent internal breaches, and protection levels for critical data such as personal information will be further strengthened. AI-based detection systems will also be enhanced to enable immediate blocking and isolation when risks are detected.

Security governance will be reorganized under a CEO-CISO/CPO structure with a new operational security council, creating a framework that spans from security issue identification through decision-making, execution, and inspection. Role-specific security training and hands-on simulation drills will also be institutionalized.

An objective verification system leveraging external experts will also be established. The company plans to launch an “Information Security Innovation Advisory Committee” reporting directly to the CEO to strengthen multi-faceted verification and advisory input on security policies and systems across the board.

“We will fundamentally rebuild our entire security framework,” Choi emphasized. “We will treat information security as the platform’s most important responsibility and competitive advantage, and do our utmost to restore customer trust.”



Click Here For The Original Source.

——————————————————–

..........

.

.