
ICT Security Policy
Move En Connect Company Limited
ICT Security Policy
*Version 1.0 | Effective Date: 2025-06-10*
Alignment: Airports of Thailand (AOT) ICT Security Standards
-----------------------------------------------------------------------
​
1. Policy Objectives
-
Ensure confidentiality, integrity, and availability of all ICT systems and data.
-
Comply with Thailand’s PDPA, AOT’s cybersecurity mandates, and international regulations (e.g., GDPR for cross-border data).
-
Mitigate risks from cyber threats (e.g., ransomware, data breaches) and operational disruptions.
​
2. Scope & Applicability
-
Covered Systems: All IT infrastructure, cloud services, IoT devices, biometric systems, and third-party integrations (e.g., AOT’s Sawasdee by AOT app, CUPPS) 68.
-
Covered Personnel: Employees, contractors, vendors, and partners accessing Move En Connect or AOT networks.
-
Data Types: Personal data (PDPA-defined), flight logistics, cargo manifests, biometric records, and operational data shared with AOT
​
3. Core Security Principles​​​​​
​
​
​
​
​
​
​
​
​
​
​
