Alibaba Mama's SDH Platform Secures Dual ISO 27001/27701 Certification for Privacy Computing Governance
Alibaba Mama's Secure Data Hub (SDH) privacy computing PaaS platform has achieved ISO/IEC 27001 and ISO/IEC 27701 dual certification, establishing a governance framework that maps security and privacy standards to platform mechanisms for asset permission management, operation control, traceability, risk governance, and auditability across multi-party data collaboration.
Alibaba Mama's Secure Data Hub (SDH) has simultaneously obtained ISO/IEC 27001 Information Security Management System certification and ISO/IEC 27701 Privacy Information Management System certification, covering the full lifecycle of platform development, testing, operations, and maintenance services, making it Alibaba Mama's first platform product with dual ISO certification.
SDH is a privacy computing PaaS product for the advertising marketing industry. Built on a privacy-safe environment, it supports cross-domain data interconnection, multi-party data fusion, and joint modeling. While ensuring privacy security and data compliance for all parties, it provides cross-domain secure and consistent data analysis and decision-making capabilities for the entire advertising delivery process, driving merchants' omnichannel business growth.
Why Data Collaboration Needs a "Dual System"
In digital advertising, data is the core fuel for growth. Data collaboration typically involves multiple entities and different types of data assets; data silos prevent efficient flow and sharing. User privacy and data security risks are amplified in multi-party scenarios.
Privacy-enhancing computing reduces plaintext exposure risk during joint computation but cannot independently answer all collaboration questions:
Which information assets need management, and who identifies and handles risks?
Which roles can access which assets, and how are permissions requested, changed, and revoked?
For what purpose is data processed, and how are key operations approved and logged?
How to respond, review, and verify remediation effectiveness when anomalies occur?
This is why an Information Security Management System (ISMS) and a Privacy Information Management System (PIMS) must be built collaboratively. The dual ISO system addresses information security risk and privacy processing responsibility respectively, bringing assets, permissions, processing purposes, operation records, and continuous improvement into unified governance. This gives cross-entity data collaboration a foundation that is manageable, controllable, traceable, sustainable, and auditable.
Information Security Management: Unified Risk Baseline
ISO/IEC 27001 adopts a risk-based approach to systematically manage information assets, personnel, processes, and technical controls. Core concerns include risk assessment, access control, cryptography and key management, security incident response, business continuity, internal audit, and continuous improvement.
For the SDH multi-party data collaboration platform, ISO/IEC 27001 provides a unified security management baseline: the platform must not only protect data and the computing environment but also clarify responsibilities, standardize operations, and continuously monitor control effectiveness.
Privacy Information Management: Privacy Responsibility Boundaries
ISO/IEC 27701 extends the ISMS to strengthen governance and protection of personal privacy information processing activities, emphasizing processing purpose, role responsibility, privacy risk assessment, processing activity records, and stakeholder management.
ISO/IEC 27701 answers three core questions in personal information processing: why process, how to process, and who is responsible. For cross-entity data collaboration, privacy-enhancing technologies reduce data exposure risk during joint computation, while governance mechanisms clarify processing purpose, participating roles, and result usage boundaries. Even if raw data is not exchanged in plaintext, without purpose limitation, role division, processing records, and responsibility tracing, a complete privacy governance closed loop cannot be formed.
Combined Effect of the Dual System
The two systems are not independent certification combinations. ISO/IEC 27001 provides the information security management foundation; ISO/IEC 27701 extends privacy information management requirements on top. Together they act on organization, processes, and technical controls, establishing clear boundaries around "what data, used by whom, for what task, delivering what results," enabling multi-party data collaboration to operate securely and orderly under a single governance framework.
From Standard Requirements to Platform Closed Loop
Combined with the SDH PaaS 3.0 product chain, the dual ISO requirements map to five mechanism categories.
1. Asset Permissions Manageable
The platform defines roles as tenant, administrator, and user. It controls asset visibility and usage through metadata assets, field-level privacy attributes, asset authorization, and cooperation spaces.
Cooperation relationships, asset scope, and operation permissions are bound together, with management of permission application, change, and revocation. The goal is not to let more people directly touch data, but to restrict the usage scope to the minimum boundary required by the business while completing joint analysis.
2. Key Operations Controllable
Cross-tenant cooperation, asset authorization, task submission, and result delivery each have corresponding confirmation or approval nodes. Tasks execute after partner confirmation; results are delivered after authorization approval, making data processing purpose, participating entities, and responsibility chains correspond to concrete operations.
Approval itself cannot replace technical controls, but together with permission verification, task orchestration, and result access control, it constitutes collaboration constraints.
3. Operation Process Traceable
The platform provides instance status, execution chain, and log query capabilities, supporting users to view task running status, locate anomalies, and retain records for key operations and result delivery.
The value of complete operation logs goes beyond troubleshooting; they provide factual evidence for security monitoring, incident response, and audit review. Only when operation records, task status, and result flow can be correlated does the platform have a basis for continuously verifying control effectiveness.
4. Risk Governance Sustainable
Data collaboration risks change with business scenarios, participating entities, and external requirements. The SDH management system covers risk assessment, internal audit, security incident response, problem rectification, and management review mechanisms to identify changes, verify controls, and drive continuous improvement.
5. Management Requirements Auditable
The management system requires translating system clauses into checkable, auditable objects: each control maps to a platform mechanism or management process, forming records for audit, incident response, and review. "Audit evidence" is not to prove absolute security, but to answer whether a control was executed, by whom, when, and with what result.
Note: PII (Personally Identifiable Information) refers to personally identifiable information; PIA (Privacy Impact Assessment) refers to a systematic assessment of processing purpose, necessity, processing methods, and potential risks conducted before personal information processing activities or when significant changes occur.
Therefore, the relationship between dual ISO system certification and the SDH PaaS platform is not "standard requirements correspond to several function points," but a synergy of three layers:
Management system defines responsibilities, processes, and continuous improvement requirements;
Platform controls solidify authorization, approval, execution, delivery, and audit into the collaboration chain;
PETs (Privacy Enhancing Technologies) reduce privacy security and data compliance risks in joint computation and result output.
Together, these three constitute the SDH platform's trusted data computing base for enterprise-level data collaboration.
Certification Is a New Starting Point
Beyond the management system certifications, the SDH platform has passed the China Academy of Information and Communications Technology's "Trustworthy Privacy Computing" Multi-Party Secure Computation (MPC) and Federated Learning (FL) basic capability special evaluation. Alibaba Mama has also been selected as a typical unit for the national data anonymization standard verification pilot and continuously participates in privacy computing and data circulation related industry standards and research.
The dual ISO certification establishes a sustainable execution and review governance baseline for the SDH platform. Going forward, the platform will continue to improve risk management, permission control, audit traceability, and privacy-enhancing technologies, and continuously verify management mechanism effectiveness through actual scenarios. New participants, scenarios, and data access can reuse unified control requirements and audit paths, reducing the cost of sorting rules from scratch for each cooperation. Cooperation parties can also verify authorization, execution, and result delivery processes based on records, laying the foundation for cross-organizational data collaboration to move from one-time delivery to long-term, large-scale operation.
Signed-in readers can open the original source through BestHub's protected redirect.
This article has been distilled and summarized from source material, then republished for learning and reference. If you believe it infringes your rights, please contactand we will review it promptly.
Alimama Tech
Official Alimama tech channel, showcasing all of Alimama's technical innovations.
How this landed with the community
Was this worth your time?
0 Comments
Thoughtful readers leave field notes, pushback, and hard-won operational detail here.
