On June 28, 2026, FEXLINK Technology (Shenzhen) Co., Ltd. officially received the ISO/IEC 27001 Information Security Management System certification issued by an internationally authoritative certification body. ISO/IEC 27001 is the world's most authoritative information security management standard, jointly published by the International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC), covering 114 control requirements across the full lifecycle of information system construction, operation, and maintenance, including risk assessment, access control, encryption management, and emergency response. This certification marks FEXLINK's establishment of an information security management system that complies with international standards across the entire chain of Digital Energy IoT product R&D, delivery, and operations.
As a Full-Stack Digital Energy IoT Solutions provider, FEXLINK's four product lines—Smart Lightning Protection, Electrical Safety, Digital Energy, and Cloud-Edge Intelligence—process massive amounts of sensing data from 200+ customer sites every day, covering high-sensitivity industrial data including 260+ electrical parameters, 1μS-level transient waveforms, and 10μA-level leakage signals. This ISO 27001 certification covers the entire process of data acquisition, transmission, storage, and processing for core products including the FEXLINK Cloud platform, FG intelligent gateways, and multi-element electrical intelligent controllers, systematically safeguarding the confidentiality, integrity, and availability of customer distribution node data, energy efficiency data, and electrical safety early warning data.
During the six-month certification implementation process, FEXLINK mapped out a complete asset inventory and data flow diagram around the five-layer "cloud-pipe-edge-end-use" architecture, identifying and addressing security risks in key domains including access control, password management, O&M audit, and third-party supplier management. FEXLINK Cloud 3.0 fully supports tenant-level data isolation, transport-layer TLS 1.3 encryption, static data AES-256 encrypted storage, and multi-factor authentication. The edge-side FG smart gateway has added device identity authentication and local data encryption capabilities based on national cryptographic SM2/SM4 algorithms, achieving the end-to-end security compliance requirement of "data stays on-site, ciphertext goes to the cloud."
The achievement of ISO 27001 certification provides internationally recognized qualification endorsement for FEXLINK's service to high-compliance industry customers in power, petrochemicals, rail transit, and public utilities. FEXLINK has embedded information security control requirements into the full lifecycle of the SLCIE Capability Model (Sense / Link / Compute / Intelligence / Evolution), implementing the concepts of "shift-left security" and continuous compliance across requirement review, code audit, release deployment, and O&M monitoring. Combined with the existing 408 national standard rule engine and 27 sub-model electrical safety diagnostic system, the company can steadily deliver key business indicators including 99.2% early warning accuracy and less than 3-second alarm response while ensuring information security.
Going forward, FEXLINK will take ISO 27001 certification as a new starting point to continuously advance the construction of compliance systems including ISO 27018 (Personal Privacy Protection), ISO 27701 (Privacy Information Management System), and MLPS 2.0 Level 3, deepening cooperation with high-compliance customers such as State Grid, China Southern Power Grid, CNPC, and Sinopec. Meanwhile, FEXLINK will regularly conduct internal audits, management reviews, and third-party surveillance audits to ensure the continuous effective operation of the information security management system, safeguarding every customer's digital energy asset security with the promise of "FEXLINK the Power.."