Developer docs
API playgroundTry for free, no card

Search company profiles

Korea Internet & Security Agency

Full company profile

uuid000748x

Namestring
Korea Internet & Security Agency
Legal namestring
한국인터넷진흥원 (Korea Internet & Security Agency)
Websiteurl
kisa.or.kr
Company typeenum
Private
Founded yearint
2003
Descriptiontext

Korea Internet & Security Agency (KISA, 한국인터넷진흥원) is South Korea's national cybersecurity regulator and internet development agency, established in 2003 and operating under the Ministry of Science and ICT as a public institution headquartered in Naju with regional offices in Seoul and Pangyo. It serves as the country's authoritative body for incident response (via KrCERT/CC), .kr domain registration, biometric and cryptomodule certification, spam regulation, and information protection policy. KISA serves four primary constituencies: South Korean citizens (via the 24/7 118 hotline and outreach), small and medium enterprises (89.4% of ransomware victims in Korea per KISA data), critical-infrastructure companies (a vulnerability management center monitoring approximately 1,200 major firms), and government agencies (the National Network Security Framework deployment).

The agency's core technology stack includes 24/7 cyber incident response platforms, AI-powered vulnerability management and abnormal-behavior detection, distributed denial-of-service defense, biometric certification (facial and palm vein), post-quantum cryptography pilots, mobile electronic document infrastructure, a Cybersecurity Big Data Center, and AI-enabled spam/smishing blocking. KISA operates KISA Academy (K-Shield, White Hat School training 420 professionals per cohort, BoB, practical cyber ranges), 16 regional information protection support centers, an Illegal Spam Response Center, the WHOIS and KRWHOIS OpenAPI services, and the Smart City Security Living Labs (autonomous driving, digital healthcare, smart manufacturing).

KISA's business model is non-commercial: it is funded entirely by annual appropriations from the Ministry of Science and ICT, with services delivered free of charge or as heavily subsidized programs (Technology Guardian Service, seven SME cybersecurity support programs, 4B-won software supply chain fund, 12B-won New Information Security Technology Programme, 45B-won N2SF deployment). Go-to-market is direct-to-government and direct-to-citizen, with no sales motion, paid tiers, or revenue generation. International expansion includes APIGA (co-operated with ICANN, 422 graduates from 32 countries), a $25.6M Philippines ODA cybersecurity center project (2026–2029), and Korea-Indonesia partnership activities involving 10 Korean security vendors.

Short descriptiontext

Korea Internet & Security Agency (KISA) is South Korea's national cybersecurity regulator under the Ministry of Science and ICT, delivering 24/7 incident response, AI-powered vulnerability management for 1,200+ critical companies, .kr domain administration, biometric certification, and SME cybersecurity services via 16 regional centers and partnerships with OpenAI and Anthropic.

Operating statusenum
Operating
Ownership categoryenum
Headcount rangeband
501–1,000
akta.pro rankint
HeadquartersNaju, South Korea
HQ citystring
Naju
HQ countrystring
South Korea
HQ regionstring
Asia
Markets served

Serves global market

Offices4 records

Each record includes

City, Country, Type, Description, Source

Keyword5 values
national cybersecurity services, cyber incident response, internet address management, biometric certification programs, information protection consulting
Industry5 codes
1Cybersecurity Architecture & Security Integration
CodeBPAEAAALPrimaryYes
2Security Awareness, Training & Compliance Attestation
CodeHDADAIAJPrimaryNo
3Vulnerability Management, Pen Testing & Attack Surface Management (ASM)
CodeHLACAJANPrimaryNo
4Cybersecurity (General)
CodeEDAOAIABPrimaryNo
5Penetration Testing, Red Team & Ethical Hacking
CodeEDAOAIAHPrimaryNo
NAICS code3 codes
  • National Security928110
  • Security Systems Services56162
  • Investigation and Security Services5616
Product category
National Cybersecurity Services
GTM motion1 record

Each record includes

Type, Description, Source

Revenue model1 record
1Government Budget Allocation
TypeManaged Services
Description

KISA operates as a South Korean public institution funded by the national budget. It receives annual appropriations from the Ministry of Science and ICT for cybersecurity infrastructure, SME support programs, incident response, and talent development. No commercial revenue model applies.

kisa.or.kr
Marketing channels8 records

Each record includes

Title, Type, Stage, Description, Source

Distribution channels5 records

Each record includes

Title, Type, Scope, Target buyer, Description, Source

Cost components5 values
Personnel, Technology or R&D, Operations, Infrastructure, Marketing or Sales
Pricing details4 tiers
1Technology Guardian Service - Free 3-year program for SMEs
ModelSubscriptionBilling cadenceAnnual
Notes

Selected SMEs receive free cybersecurity monitoring and software support for three years. Following the free period, the ministry provides up to 8.8 million won per company for ongoing security activities.

ajupress.com
2Seven free cybersecurity support programmes for SMEs
ModelSubscriptionBilling cadenceAnnual
Notes

Science Ministry and KISA jointly launched seven free cybersecurity programs for SMEs including security investment guides, attack surface checks, software supply chain diagnostics, AI vulnerability testing, penetration testing, and security vulnerability checks.

digitaltoday.co.kr
3Software supply chain security support programme
ModelSubscriptionBilling cadenceAnnual
Notes

Ministry of Science and ICT and KISA announced a 4 billion won fund to develop new security models and support software supply chain security management within domestic companies.

digitaltoday.co.kr
4New Information Security Technology Support Program
ModelSubscriptionBilling cadenceAnnual
Notes

12 billion won ($8.3 million) distributed to 50 companies for 18 projects under the 2026 New Information Security Technology Support Program targeting AI-based security product commercialization, AI security company development, Korean-model integrated security, and zero-trust adoption.

koreatimes.co.kr
GTM typeB2B
B2B
Offering typeServices
Services
Brand1 of 5 records shown
1KISA 118 / 118 상담 서비스
Description

KISA's 24/7 cybersecurity hotline service providing hacking, spam, and personal information breach consultation to the public.

kisa.or.kr
+4 more records
Core offering1 text field

KISA operates South Korea's national cybersecurity infrastructure, providing 24/7 cyber incident response via KrCERT/CC, free cybersecurity support programs for SMEs (including security investment guides, attack surface checks, software supply chain diagnostics, penetration testing, and the Technology Guardian Service), WHOIS and .kr domain administration, illegal spam reporting and blocking, biometric (palm vein, facial) certification for the financial sector, AI-powered vulnerability management for approximately 1,200 critical-industry companies, and cybersecurity talent development through KISA Academy (K-Shield, White Hat School, BoB). The agency coordinates the National Network Security Framework (N2SF), runs the post-quantum cryptography pilot for finance, and delivers the APIGA internet governance program across 32 countries in partnership with ICANN.

Differentiator
Functional benefit
Problem solved
Quantifiable outcome1 of 8 values shown
  • 89.4% of ransomware attack reports in South Korea targeted SMEs and mid-sized companies last year
+7 more records
Product overview1 text field

Korea Internet & Security Agency (KISA) operates as a comprehensive cybersecurity and digital trust agency offering multiple integrated services and programs. The portfolio includes the KISA Academy platform for cybersecurity talent development (featuring K-Shield certifications, White Hat School, and practical cyber training ranges), the 118 Emergency Response Center for 24/7 incident reporting, Local Information Protection Centers across 16 regions, WHOIS and domain services, Illegal Spam Response Center, blockchain trust infrastructure (K-BTF), National Network Security Framework (N2SF), AI security programs, and mobile electronic document services. The agency also provides information protection consulting and SECaaS for SMEs, cryptomodule verification, cybersecurity big data analytics, physical AI security certification, and the APIGA internet governance training program. These offerings work together to provide end-to-end cybersecurity coverage from education and prevention through incident response and international cooperation.

Product and service22 records
1118 Emergency Response Center
CategoryNational Cyber Incident Response Service
Description

24/7 nationwide emergency hotline for cyber incidents, spam, and personal information breaches with phone counseling, text ARS, chat counseling, and chatbot services. Serves South Korean citizens reporting hacking, voice phishing, smishing, personal data breaches, and spam messages.

2KrCERT/CC (Korea Computer Emergency Response Team/Coordination Center)
CategoryNational Cybersecurity Incident Coordination
Description

Standing national cyber incident response and coordination capability under KISA, operating 24/7 to coordinate detection, analysis, and response to major cyber incidents in South Korea and provide hand-on support to victim enterprises.

3Local Information Protection Support Centers (16 regional centers)
CategoryRegional Cybersecurity Support Services
Description

Network of 16 regional information protection support centers across South Korea (Gyeonggi, Incheon, Gangwon, Chungbuk, Chungnam, Daejeon, Sejong, Jeonbuk, Jeonnam, Gwangju, Gyeongnam, Busan, Daegu, Ulsan, Gyeongbuk, Jeju) providing local SMEs with free cybersecurity consulting, SECaaS cloud security services, and vulnerability assessments.

4KISA Academy (Korea Internet & Security Agency Academy)
CategoryCybersecurity Training and Certification
Description

Comprehensive cybersecurity professional training and certification platform operated by KISA, offering K-Shield certification courses, White Hat School talent development, BoB (Best of the Best) program, AI Security Control training, and hands-on cyber training ranges. Located at the Pangyo Education Center in the Creative Economy Valley.

5Information Protection Consulting & SECaaS
CategoryCybersecurity Consulting and Managed Security
Description

Security consulting and cloud-based Security-as-a-Service (SECaaS) offerings for SMEs, including security solution packages and ransomware response consulting, delivered largely through the 16 regional information protection support centers.

6WHOIS Service (.kr)
CategoryInternet Address Management
Description

Domain name registration information lookup service for .kr with OpenAPI programmatic access, supporting domain availability checks, IP address and AS number queries, domain registration confirmation, information protection settings, and authentication code lookup. Functions as South Korea's national internet address management service.

7Illegal Spam Response Center
CategorySpam and Smishing Response
Description

National center for receiving, processing, and responding to illegal spam reports and violations, providing SPF (Sender Policy Framework) mail-server registration, smishing confirmation, and AI-based malicious message blocking for South Korean users.

8Seven Free Cybersecurity Support Programs for SMEs
CategorySME Cybersecurity Support Program
Description

Bundle of seven free cybersecurity support programs targeting SMEs with insufficient security conditions: security investment guides, attack surface checks, software supply chain diagnostics, AI vulnerability testing, penetration testing, and security vulnerability checks. Co-delivered by the Ministry of Science and ICT and KISA.

9Technology Guardian Service (Article 18, Technology Protection Act)
CategorySME Managed Security Service
Description

24/7 cybersecurity monitoring and software support service for SMEs lacking dedicated cybersecurity personnel, providing free monitoring and software support for three years. After the free period, the Ministry of SMEs and Startups provides up to 8.8 million won per company for ongoing security activities.

10New Information Security Technology Support Programme 2026
CategoryIndustry Funding Program
Description

Funding and commercialization support program distributing 12 billion won ($8.3 million) to 50 companies for 18 projects across four next-generation security domains: AI-based security product commercialization, AI security company development, Korean-model integrated security, and zero-trust adoption.

11AI Security Promising Company Fostering Programme
CategoryAI Security Industry Support Programme
Description

KISA-led program supporting the development and commercialization of AI-based security products, including funding for agentic AI platforms for Autonomous Security Operations Centers (SOC) where multiple AI agents collaborate on detection, analysis, and response tasks.

12National Network Security Framework (N2SF) Deployment Support Programme
CategoryNational Network Security Framework
Description

Security framework for government and public institutions that classifies information into confidential, sensitive, or public categories with differentiated security levels, replacing the previous mandatory network separation policy. 45 billion won deployment support programme channels funding through six consortiums of public agencies (Climate/Energy Ministry-KDN, Gender Equality Ministry, Korea Post, Korea Expressway Corporation, Korea Real Estate Agency, Korea Research Foundation) paired with domestic security vendors.

13Post-Quantum Cryptography (PQC) Pilot Transition Project 2026
CategoryCryptography Migration Program
Description

Pilot project in the finance sector to conduct real-world validation of migrating financial institutions from traditional RSA and ECC cryptography to PQC-based architecture. H Card selected as the first participating financial institution; BlockS conducting the validation work.

14Biometric Certification Program (palm vein / facial)
CategoryBiometric Certification
Description

National certification program for biometric technologies including facial recognition and palm vein biometrics, providing domestic assurance of technology effectiveness, particularly for authentication in the financial sector.

15AI-Powered Vulnerability Management Center
CategoryCritical Infrastructure Cybersecurity Monitoring
Description

Government-operated AI-powered vulnerability management center monitoring approximately 1,200 major companies in critical industries, established under the AI-powered emergency system within the Office of National Security. KISA-operating platform for AI-driven vulnerability detection and proactive threat response.

16Cybersecurity Big Data Center
CategoryCyber Threat Intelligence Platform
Description

Platform for analyzing and monitoring cybersecurity threats and trends, including ransomware dynamics, cyber threat intelligence, and spam distribution statistics. Accessible via the Boho website (boho.or.kr) and supports web-server log analysis and anomaly detection.

17Cryptomodule Verification Service
CategoryCryptographic Module Certification
Description

Verification service ensuring safety and implementation suitability of cryptomodules used in information protection products deployed in government networks, accompanied by professional education programs for cryptographic module developers.

18Blockchain Trust Infrastructure (K-BTF)
CategoryBlockchain Industry Program
Description

Blockchain industry activation program supporting blockchain service discovery and diffusion in South Korea with approximately 3 billion KRW in annual support funding.

19APIGA (Asia-Pacific Internet Governance Academy)
CategoryInternet Governance Capacity Building
Description

Joint internet governance training program co-operated by KISA and ICANN since 2016 for the Asia-Pacific region, with 422 graduates from 32 countries and local APIGA programs operating in 10 Asia-Pacific countries. The 'APIGA+10' task force (Busan, July 2026) is transforming the program into a global internet governance talent development program.

20My Data Service (온마이데이터)
CategoryPersonal Data Management Service
Description

Personal data management platform enabling South Korean citizens to view and control their personal information across multiple service providers, supported by KISA-run awareness events promoting usage and personal information autonomy.

21Smart City Security Living Lab
CategorySmart City Security Testing Facility
Description

Testing and certification facility for smart city technologies, including autonomous-driving security and digital healthcare security solutions, operated by KISA as part of its digital trust infrastructure.

22Physical AI Security Certification Program
CategoryPhysical AI Security Standards
Description

Program developing security standards and industry-specific protection models for physical AI systems, addressing cyberattacks on physical AI that could cause equipment malfunctions and production shutdowns across the manufacturing, healthcare, and mobility sectors.

Scale indicator19 records

Each record includes

Type, Value, Description, Source

Partnership24 partners
Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-06-22
Description

KISA was selected as the implementing organization for KOICA's Philippines Cyber Crisis Response Capacity Building project. The $25.6 million ODA program runs from second half 2026 through 2029 (4 years) to help build the Philippines National Cyber Security Center and develop cybersecurity professionals.

Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-06-22
Description

Airkey participated in the consortium led by KISA for the Philippines National Cyber Security Center construction and professional development project. Consortium includes Piolink and Korea Telecom Internet Technology.

Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-06-22
Description

Piolink participated in the consortium led by KISA for the Philippines National Cyber Security Center construction and professional development project, contributing network security technology expertise.

4Korea Telecom Internet Technology (한국통신인터넷기술)
Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-06-22
Description

Participated in the KISA-led consortium for the Philippines cyber crisis response capacity building, contributing telecommunications and internet security technology.

kisa.or.kr
5Six Consortiums (Public-Sector and Domestic Cybersecurity Companies)
Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-06-19
Description

KISA selected six consortiums comprising public-sector organizations and domestic cybersecurity companies for the 2026 National Network Security Framework (N2SF) deployment support programme. Consortiums include climate/energy ministry-KDN, Gender Equality Ministry, Korea Post, Korea Expressway Corporation, Korea Real Estate Agency, and Korea Research Foundation with security companies.

telecompaper.com
Strategic tierMinorTypeOthersAnnounced on2026-06-18
Description

KISA signed an MOU with four patent law firms and one domain registrar to protect corporate online brands. Partners include International Patent Barun, Lea&mo Partners, Patent Law Firm Loud, Patent Law Firm Seongam, and Whois (주식회사 후이즈), collaborating on domain name dispute resolution and trademark protection.

7Lea&mo Partners (리앤목 특허법인)
Strategic tierMinorTypeOthersAnnounced on2026-06-18
Description

KISA partnered with Lea&mo Partners for K-brand protection, focusing on domain name dispute resolution and trademark protection in the online environment.

kisa.or.kr
8Patent Law Firm Loud (특허법인 라우드)
Strategic tierMinorTypeOthersAnnounced on2026-06-18
Description

KISA partnered with Patent Law Firm Loud for K-brand protection, focusing on domain name dispute resolution and trademark protection in the online environment.

kisa.or.kr
9Patent Law Firm Seongam (특허법인 성암)
Strategic tierMinorTypeOthersAnnounced on2026-06-18
Description

KISA partnered with Patent Law Firm Seongam for K-brand protection, focusing on domain name dispute resolution and trademark protection in the online environment.

kisa.or.kr
Strategic tierMinorTypeOthersAnnounced on2026-06-18
Description

KISA partnered with domain name registrar Whois for K-brand protection, focusing on domain name dispute resolution and trademark protection in the online environment.

Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-06-10
Description

KISA and ICANN co-operate APIGA since 2016, which has trained 422 graduates from 32 countries. Local APIGA programs now operate in 10 Asia-Pacific countries. An 'APIGA+10' task force is being established in July 2026 in Busan to transform APIGA into a global internet governance talent development program.

12United Nations Internet Governance Forum (IGF) Multistakeholder Advisory Group
Strategic tierMinorTypeStrategic or Co-development PartnerAnnounced on2026-06-09
Description

Met with UN IGF Multistakeholder Advisory Group chair at ICANN meeting to discuss APIGA development and expand internet governance cooperation globally.

kisa.or.kr
Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-06-08
Description

KISA and DotAsia signed an MOU at the 86th ICANN meeting to cultivate internet governance talent for the Asia-Pacific region. DotAsia manages the .asia ccTLD, hosts the Asia-Pacific Internet Governance Forum, and supports youth capacity building education.

Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-06-08
Description

KISA co-operates the Asia-Pacific Internet Governance Academy (APIGA) with ICANN since 2016. At the 86th ICANN meeting, KISA shared APIGA's 10-year achievements and discussed plans to expand APIGA into a global program with an 'APIGA+10' task force.

15APTLD (Asia Pacific Domain Name System Regional Internet Registry)
Strategic tierMinorTypeStrategic or Co-development PartnerAnnounced on2026-06-08
Description

KISA met with APTLD secretariat and other regional internet policy organizations at the ICANN meeting to discuss APIGA development and promote participation in the APIGA+10 task force.

kisa.or.kr
Strategic tierMinorTypeStrategic or Co-development PartnerAnnounced on2026-06-08
Description

Met with JPNIC at ICANN meeting to discuss APIGA development and cooperation in internet governance education for the Asia-Pacific region.

Strategic tierMinorTypeStrategic or Co-development PartnerAnnounced on2026-06-08
Description

Met with VNNIC at ICANN meeting to discuss APIGA development and regional internet governance cooperation.

Strategic tierMinorTypeStrategic or Co-development PartnerAnnounced on2026-06-08
Description

Met with TWNIC at ICANN meeting to discuss APIGA development and cooperation in internet governance education.

19Indonesia Communications and Information Technology Association (Kominfo)
Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-06-04
Description

KISA co-hosted the '2026 AI Era Korea-Indonesia Information Protection Partnership Day' with Indonesian communication association, attended by 120+ Indonesian officials and business representatives. Seminar covered telecom and financial cybersecurity policies, and 10 Korean security companies conducted 1:1 business meetings with Indonesian organizations.

kisa.or.kr
2010 Korean Information Security Companies (Korea-Indonesia Partnership)
Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-06-04
Description

Participating companies in the Korea-Indonesia Information Protection Partnership Day included Piolink, Raon S+ecure, NPCORE, WinningI, LSWARE (telecom sector) and QuadMiner, MarkAny, Eagle Corp, PNSecure, WIZCORE (financial sector), engaging in seminars and 1:1 business meetings with Indonesian organizations.

kisa.or.kr
Strategic tierFlagshipTypeTechnology or IntegrationAnnounced on2026-06-03
Description

Korea joined Anthropic's Project Glasswing through KISA, gaining access to the Claude Mythos AI model for expert-level vulnerability detection. The initiative expanded to approximately 150 organizations across 15 countries. Samsung Electronics, SK hynix, and SK Telecom were expected to join as new partners, having previously participated in Anthropic's Series H funding round.

Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-05-29
Description

At the 9th science and technology ministers meeting, KISA and the ministry announced measures to strengthen private sector cybersecurity response systems, including establishing an AI-powered emergency system under the Office of National Security and a vulnerability management center under KISA monitoring 1,200 major companies.

Strategic tierFlagshipTypeTechnology or IntegrationAnnounced on2026-05-29
Description

Korea announced expanded cooperation with OpenAI for digital defense response and information sharing as part of its cybersecurity system transformation plan, leveraging homegrown AI technologies starting in 2027.

Strategic tierFlagshipTypeTechnology or IntegrationAnnounced on2026-05-27
Description

South Korea became the first Asian country alongside Japan to join OpenAI's Daybreak cybersecurity initiative under the Governmental Trusted Access for Cyber (GTAC) program. KISA oversees the program's implementation, granting Korean institutions access to advanced AI models including GPT-5.5-Cyber for defensive cybersecurity purposes. OpenAI plans to expand access to private companies in key Korean industries.

Recent move7 records

Each record includes

Date, Type, Title, Description, Source

Expansion highlight7 records

Each record includes

Type, Description

Peers10 records
TypeDirect peer
Description

CISA is the United States' national cybersecurity regulator and infrastructure protection agency, operating an incident response capability and national vulnerability management programs. It is the most direct functional peer to KISA, sharing the same combination of regulatory authority, CERT coordination, and national critical-infrastructure monitoring.

2European Union Agency for Cybersecurity (ENISA)
TypeDirect peer
Description

ENISA is the EU's dedicated cybersecurity agency responsible for supporting member states with incident response preparedness, certification frameworks, and cross-border cooperation. Comparable to KISA's role as Korea's central cybersecurity coordinator under the Ministry of Science and ICT.

TypeDirect peer
Description

JPCERT/CC is Japan's national computer emergency response team and a leading CERT in the Asia-Pacific region. It mirrors KISA's KrCERT/CC function, providing incident handling, vulnerability disclosure coordination, and inter-agency cooperation.

TypeDirect peer
Description

The UK's NCSC is a government authority providing authoritative cyber incident response, technical guidance, and certification for critical sectors. Comparable to KISA in regulatory breadth, public-facing 24/7 incident reporting, and close coordination with major private-sector entities.

5Bundesamt für Sicherheit in der Informationstechnik (BSI Germany)
TypeDirect peer
Description

BSI is Germany's federal cybersecurity authority and KISA's bilateral counterpart under the 2024 mutual recognition arrangement for IT security labels (the BSI IT Security Label program now applied to Samsung products). Comparable in regulatory scope, certification authority, and international cooperation mandate.

TypeDirect peer
Description

CERT-In is India's national CERT under the Ministry of Electronics and IT, responsible for incident response, cybersecurity advisories, and vulnerability handling for critical sectors. Operates a similar mandate to KISA's KrCERT/CC, scaled for a much larger digital economy.

TypeDirect peer
Description

CSA is Singapore's national cybersecurity agency overseeing national cyberdefense, critical-infrastructure protection, and ecosystem development - functionally equivalent to KISA across regulatory authority and talent development.

TypeDirect peer
Description

CNCERT/CC is China's national CERT coordinating incident response, vulnerability disclosure, and international cooperation. Geopolitically distinct but operationally the closest functional peer to KISA's KrCERT/CC in scale and national coordination role.

TypeDirect peer
Description

The ACSC sits within the Australian Signals Directorate and provides whole-of-government cyber security services, including incident response and critical-infrastructure engagement. Mirrors KISA's combined regulatory, incident response, and SME outreach posture.

TypeBroad incumbent
Description

NIST develops cybersecurity standards, frameworks (CSF, NICE), and cryptographic guidelines (including the post-quantum cryptography standards KISA is piloting) used globally. It is a broader standards-setting peer to KISA's cybersecurity architecture and certification work, particularly the cryptomodule verification service.

Market position
Strengths4 records

Each record includes

Headline, Details, Source

Weaknesses4 records

Each record includes

Headline, Details, Source

Competitive moat6 records

Each record includes

Type, Details

Key risks5 records

Each record includes

Headline, Details, Source

Key highlights6 records

Each record includes

Headline, Details, Source

Customer concentration

Classification, Details

Named customers8 records

Each record includes

Name, Industry, Type, Use case, Source, UUID

Segment4 records

Each record includes

Title, Type, Primary, Description, Pain point addressed, Use case, Source

Ideal customer profile5 records

Each record includes

Profile, Firmographic size, Sales motion, Sales cycle length, Buying structure, Purchase trigger, Buyer persona, Geography, Industry vertical, Primary use case, Description, Pain points, Evidence proof points, Target buyer

Technology focused
Yes
API detail
Has APIbool
Yes

Docs URL, Description

AI capability11 records

Each record includes

Type, Description, Source

AI maturity
App detail

Has app

Feature8 records

Each record includes

Title, Differentiator, Description, Source

Core technology
Revenue estimate
Valuation estimate
Number of profiles
Profiles8 records

Each record includes

Name, Designation, Designation category, Overview, Profile commentary, Source

Subsidiaries16 records

Each record includes

Name, Acquired on, Relationship type, Type, Business focus

Compliance2 records

Each record includes

Name, Class, Description

Funding overview

Funding stage, Last funding date, Total funding USD

Funding rounds

Each record includes

Round, Amount USD, Date, Pre money valuation, Total investors, Investors, News

Investors

Each record includes

Name, Type, Date of entry, Rounds participated, Website

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

M&A

Each record includes

Name, Acquisition type, Announced date, Completed date, Status, Website, News

Investment2 records

Each record includes

Name, Round, Announced date, Lead investor, Website, News

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Korea Internet & Security Agency

National Cybersecurity Serviceskisa.or.kr

Korea Internet & Security Agency (KISA) is South Korea's national cybersecurity regulator under the Ministry of Science and ICT, delivering 24/7 incident response, AI-powered vulnerability management for 1,200+ critical companies, .kr domain administration, biometric certification, and SME cybersecurity services via 16 regional centers and partnerships with OpenAI and Anthropic.

What Korea Internet & Security Agency does

Korea Internet & Security Agency (KISA, 한국인터넷진흥원) is South Korea's national cybersecurity regulator and internet development agency, established in 2003 and operating under the Ministry of Science and ICT as a public institution headquartered in Naju with regional offices in Seoul and Pangyo. It serves as the country's authoritative body for incident response (via KrCERT/CC), .kr domain registration, biometric and cryptomodule certification, spam regulation, and information protection policy. KISA serves four primary constituencies: South Korean citizens (via the 24/7 118 hotline and outreach), small and medium enterprises (89.4% of ransomware victims in Korea per KISA data), critical-infrastructure companies (a vulnerability management center monitoring approximately 1,200 major firms), and government agencies (the National Network Security Framework deployment).

The agency's core technology stack includes 24/7 cyber incident response platforms, AI-powered vulnerability management and abnormal-behavior detection, distributed denial-of-service defense, biometric certification (facial and palm vein), post-quantum cryptography pilots, mobile electronic document infrastructure, a Cybersecurity Big Data Center, and AI-enabled spam/smishing blocking. KISA operates KISA Academy (K-Shield, White Hat School training 420 professionals per cohort, BoB, practical cyber ranges), 16 regional information protection support centers, an Illegal Spam Response Center, the WHOIS and KRWHOIS OpenAPI services, and the Smart City Security Living Labs (autonomous driving, digital healthcare, smart manufacturing).

KISA's business model is non-commercial: it is funded entirely by annual appropriations from the Ministry of Science and ICT, with services delivered free of charge or as heavily subsidized programs (Technology Guardian Service, seven SME cybersecurity support programs, 4B-won software supply chain fund, 12B-won New Information Security Technology Programme, 45B-won N2SF deployment). Go-to-market is direct-to-government and direct-to-citizen, with no sales motion, paid tiers, or revenue generation. International expansion includes APIGA (co-operated with ICANN, 422 graduates from 32 countries), a $25.6M Philippines ODA cybersecurity center project (2026–2029), and Korea-Indonesia partnership activities involving 10 Korean security vendors.

Korea Internet & Security Agency firmographics

Firmographics
Name
Korea Internet & Security Agency
Legal name
한국인터넷진흥원 (Korea Internet & Security Agency)
Website
https://kisa.or.kr
Company type
Private
Founded year
2003
Operating status
Operating
Headcount range
501–1,000 employees
Short description
Korea Internet & Security Agency (KISA) is South Korea's national cybersecurity regulator under the Ministry of Science and ICT, delivering 24/7 incident response, AI-powered vulnerability management for 1,200+ critical companies, .kr domain administration, biometric certification, and SME cybersecurity services via 16 regional centers and partnerships with OpenAI and Anthropic.
Ownership category
akta.pro rank

Korea Internet & Security Agency industry classification

Industry
Product category
National Cybersecurity Services
NAICS
National Security (928110), Security Systems Services (56162), Investigation and Security Services (5616)
akta.pro primary industry
Cybersecurity Architecture & Security Integration (BPAEAAAL)
akta.pro secondary industries
Security Awareness, Training & Compliance Attestation (HDADAIAJ), Vulnerability Management, Pen Testing & Attack Surface Management (ASM) (HLACAJAN), Cybersecurity (General) (EDAOAIAB), Penetration Testing, Red Team & Ethical Hacking (EDAOAIAH)

Keywords

  • National cybersecurity services
  • Cyber incident response
  • Internet address management
  • Biometric certification programs
  • Information protection consulting

Where Korea Internet & Security Agency is headquartered

Location

Headquarters

HQ city
Naju
HQ country
South Korea
HQ region
Asia

Offices4 records

Markets served

Korea Internet & Security Agency business model

Business model
GTM type
B2B
Offering type
Services
Cost components
Personnel, Technology or R&D, Operations, Infrastructure, Marketing or Sales

Revenue model

  1. Government Budget Allocation: KISA operates as a South Korean public institution funded by the national budget. It receives annual appropriations from the Ministry of Science and ICT for cybersecurity infrastructure, SME support programs, incident response, and talent development. No commercial revenue model applies.

Pricing tiers

ModelBillingPrice
SubscriptionAnnualTechnology Guardian Service - Free 3-year program for SMEs
SubscriptionAnnualSeven free cybersecurity support programmes for SMEs
SubscriptionAnnualSoftware supply chain security support programme
SubscriptionAnnualNew Information Security Technology Support Program

Go-to-market motion1 record

Distribution channels5 records

Marketing channels8 records

Korea Internet & Security Agency product offering

Product offering

Core offering

KISA operates South Korea's national cybersecurity infrastructure, providing 24/7 cyber incident response via KrCERT/CC, free cybersecurity support programs for SMEs (including security investment guides, attack surface checks, software supply chain diagnostics, penetration testing, and the Technology Guardian Service), WHOIS and .kr domain administration, illegal spam reporting and blocking, biometric (palm vein, facial) certification for the financial sector, AI-powered vulnerability management for approximately 1,200 critical-industry companies, and cybersecurity talent development through KISA Academy (K-Shield, White Hat School, BoB). The agency coordinates the National Network Security Framework (N2SF), runs the post-quantum cryptography pilot for finance, and delivers the APIGA internet governance program across 32 countries in partnership with ICANN.

Product overview

Korea Internet & Security Agency (KISA) operates as a comprehensive cybersecurity and digital trust agency offering multiple integrated services and programs. The portfolio includes the KISA Academy platform for cybersecurity talent development (featuring K-Shield certifications, White Hat School, and practical cyber training ranges), the 118 Emergency Response Center for 24/7 incident reporting, Local Information Protection Centers across 16 regions, WHOIS and domain services, Illegal Spam Response Center, blockchain trust infrastructure (K-BTF), National Network Security Framework (N2SF), AI security programs, and mobile electronic document services. The agency also provides information protection consulting and SECaaS for SMEs, cryptomodule verification, cybersecurity big data analytics, physical AI security certification, and the APIGA internet governance training program. These offerings work together to provide end-to-end cybersecurity coverage from education and prevention through incident response and international cooperation.

Differentiator

Problem solved

Functional benefit

Brands

  • KISA 118 / 118 상담 서비스: KISA's 24/7 cybersecurity hotline service providing hacking, spam, and personal information breach consultation to the public.
  • KISA 아카데미 (KISA Academy)
  • 지역정보보호센터 (Regional Information Protection Support Centers)
  • 불법스팸대응센터 (Illegal Spam Response Center)
  • KISA WHOIS

Products and services

  • 118 Emergency Response Center 24/7 nationwide emergency hotline for cyber incidents, spam, and personal information breaches with phone counseling, text ARS, chat counseling, and chatbot services. Serves South Korean citizens reporting hacking, voice phishing, smishing, personal data breaches, and spam messages.
  • KrCERT/CC (Korea Computer Emergency Response Team/Coordination Center) Standing national cyber incident response and coordination capability under KISA, operating 24/7 to coordinate detection, analysis, and response to major cyber incidents in South Korea and provide hand-on support to victim enterprises.
  • Local Information Protection Support Centers (16 regional centers) Network of 16 regional information protection support centers across South Korea (Gyeonggi, Incheon, Gangwon, Chungbuk, Chungnam, Daejeon, Sejong, Jeonbuk, Jeonnam, Gwangju, Gyeongnam, Busan, Daegu, Ulsan, Gyeongbuk, Jeju) providing local SMEs with free cybersecurity consulting, SECaaS cloud security services, and vulnerability assessments.
  • KISA Academy (Korea Internet & Security Agency Academy) Comprehensive cybersecurity professional training and certification platform operated by KISA, offering K-Shield certification courses, White Hat School talent development, BoB (Best of the Best) program, AI Security Control training, and hands-on cyber training ranges. Located at the Pangyo Education Center in the Creative Economy Valley.
  • Information Protection Consulting & SECaaS Security consulting and cloud-based Security-as-a-Service (SECaaS) offerings for SMEs, including security solution packages and ransomware response consulting, delivered largely through the 16 regional information protection support centers.
  • WHOIS Service (.kr) Domain name registration information lookup service for .kr with OpenAPI programmatic access, supporting domain availability checks, IP address and AS number queries, domain registration confirmation, information protection settings, and authentication code lookup. Functions as South Korea's national internet address management service.
  • Illegal Spam Response Center National center for receiving, processing, and responding to illegal spam reports and violations, providing SPF (Sender Policy Framework) mail-server registration, smishing confirmation, and AI-based malicious message blocking for South Korean users.
  • Seven Free Cybersecurity Support Programs for SMEs Bundle of seven free cybersecurity support programs targeting SMEs with insufficient security conditions: security investment guides, attack surface checks, software supply chain diagnostics, AI vulnerability testing, penetration testing, and security vulnerability checks. Co-delivered by the Ministry of Science and ICT and KISA.
  • Technology Guardian Service (Article 18, Technology Protection Act) 24/7 cybersecurity monitoring and software support service for SMEs lacking dedicated cybersecurity personnel, providing free monitoring and software support for three years. After the free period, the Ministry of SMEs and Startups provides up to 8.8 million won per company for ongoing security activities.
  • New Information Security Technology Support Programme 2026 Funding and commercialization support program distributing 12 billion won ($8.3 million) to 50 companies for 18 projects across four next-generation security domains: AI-based security product commercialization, AI security company development, Korean-model integrated security, and zero-trust adoption.
  • AI Security Promising Company Fostering Programme KISA-led program supporting the development and commercialization of AI-based security products, including funding for agentic AI platforms for Autonomous Security Operations Centers (SOC) where multiple AI agents collaborate on detection, analysis, and response tasks.
  • National Network Security Framework (N2SF) Deployment Support Programme Security framework for government and public institutions that classifies information into confidential, sensitive, or public categories with differentiated security levels, replacing the previous mandatory network separation policy. 45 billion won deployment support programme channels funding through six consortiums of public agencies (Climate/Energy Ministry-KDN, Gender Equality Ministry, Korea Post, Korea Expressway Corporation, Korea Real Estate Agency, Korea Research Foundation) paired with domestic security vendors.
  • Post-Quantum Cryptography (PQC) Pilot Transition Project 2026 Pilot project in the finance sector to conduct real-world validation of migrating financial institutions from traditional RSA and ECC cryptography to PQC-based architecture. H Card selected as the first participating financial institution; BlockS conducting the validation work.
  • Biometric Certification Program (palm vein / facial) National certification program for biometric technologies including facial recognition and palm vein biometrics, providing domestic assurance of technology effectiveness, particularly for authentication in the financial sector.
  • AI-Powered Vulnerability Management Center Government-operated AI-powered vulnerability management center monitoring approximately 1,200 major companies in critical industries, established under the AI-powered emergency system within the Office of National Security. KISA-operating platform for AI-driven vulnerability detection and proactive threat response.
  • Cybersecurity Big Data Center Platform for analyzing and monitoring cybersecurity threats and trends, including ransomware dynamics, cyber threat intelligence, and spam distribution statistics. Accessible via the Boho website (boho.or.kr) and supports web-server log analysis and anomaly detection.
  • Cryptomodule Verification Service Verification service ensuring safety and implementation suitability of cryptomodules used in information protection products deployed in government networks, accompanied by professional education programs for cryptographic module developers.
  • Blockchain Trust Infrastructure (K-BTF) Blockchain industry activation program supporting blockchain service discovery and diffusion in South Korea with approximately 3 billion KRW in annual support funding.
  • APIGA (Asia-Pacific Internet Governance Academy) Joint internet governance training program co-operated by KISA and ICANN since 2016 for the Asia-Pacific region, with 422 graduates from 32 countries and local APIGA programs operating in 10 Asia-Pacific countries. The 'APIGA+10' task force (Busan, July 2026) is transforming the program into a global internet governance talent development program.
  • My Data Service (온마이데이터) Personal data management platform enabling South Korean citizens to view and control their personal information across multiple service providers, supported by KISA-run awareness events promoting usage and personal information autonomy.
  • Smart City Security Living Lab Testing and certification facility for smart city technologies, including autonomous-driving security and digital healthcare security solutions, operated by KISA as part of its digital trust infrastructure.
  • Physical AI Security Certification Program Program developing security standards and industry-specific protection models for physical AI systems, addressing cyberattacks on physical AI that could cause equipment malfunctions and production shutdowns across the manufacturing, healthcare, and mobility sectors.

Quantifiable outcome

  • 89.4% of ransomware attack reports in South Korea targeted SMEs and mid-sized companies last year
  • +7 more outcomes

Companies that use Korea Internet & Security Agency

Customer profile

Named customers8 records

Segments4 records

Ideal customer profiles5 records

Korea Internet & Security Agency technology and API

Technology

Technology focussed Yes

API detail

Has API
Yes
API docs
API detail

Core technology

AI maturity

App detail

AI capability11 records

Feature8 records

Korea Internet & Security Agency partnerships and signals

Strategic signal

Partnerships

24 partnerships are on record, tiered core, minor and flagship.

  • Korea International Cooperation Agency (KOICA)coreStrategic or Co-development Partner · 22 June 2026KISA was selected as the implementing organization for KOICA's Philippines Cyber Crisis Response Capacity Building project. The $25.6 million ODA program runs from second half 2026 through 2029 (4 years) to help build the Philippines National Cyber Security Center and develop cybersecurity professionals.
  • Airkey Co., Ltd. (주식회사 에어키)coreStrategic or Co-development Partner · 22 June 2026Airkey participated in the consortium led by KISA for the Philippines National Cyber Security Center construction and professional development project. Consortium includes Piolink and Korea Telecom Internet Technology.
  • Piolink Co., Ltd. (주식회사 파이오링크)coreStrategic or Co-development Partner · 22 June 2026Piolink participated in the consortium led by KISA for the Philippines National Cyber Security Center construction and professional development project, contributing network security technology expertise.
  • Korea Telecom Internet Technology (한국통신인터넷기술)coreStrategic or Co-development Partner · 22 June 2026Participated in the KISA-led consortium for the Philippines cyber crisis response capacity building, contributing telecommunications and internet security technology.
  • Six Consortiums (Public-Sector and Domestic Cybersecurity Companies)coreStrategic or Co-development Partner · 19 June 2026KISA selected six consortiums comprising public-sector organizations and domestic cybersecurity companies for the 2026 National Network Security Framework (N2SF) deployment support programme. Consortiums include climate/energy ministry-KDN, Gender Equality Ministry, Korea Post, Korea Expressway Corporation, Korea Real Estate Agency, and Korea Research Foundation with security companies.
  • International Patent Barun (국제특허 바른)minorOthers · 18 June 2026KISA signed an MOU with four patent law firms and one domain registrar to protect corporate online brands. Partners include International Patent Barun, Lea&mo Partners, Patent Law Firm Loud, Patent Law Firm Seongam, and Whois (주식회사 후이즈), collaborating on domain name dispute resolution and trademark protection.
  • Lea&mo Partners (리앤목 특허법인)minorOthers · 18 June 2026KISA partnered with Lea&mo Partners for K-brand protection, focusing on domain name dispute resolution and trademark protection in the online environment.
  • Patent Law Firm Loud (특허법인 라우드)minorOthers · 18 June 2026KISA partnered with Patent Law Firm Loud for K-brand protection, focusing on domain name dispute resolution and trademark protection in the online environment.
  • Patent Law Firm Seongam (특허법인 성암)minorOthers · 18 June 2026KISA partnered with Patent Law Firm Seongam for K-brand protection, focusing on domain name dispute resolution and trademark protection in the online environment.
  • Whois (주식회사 후이즈)minorOthers · 18 June 2026KISA partnered with domain name registrar Whois for K-brand protection, focusing on domain name dispute resolution and trademark protection in the online environment.
  • Asia-Pacific Internet Governance Academy (APIGA) PartnerscoreStrategic or Co-development Partner · 10 June 2026KISA and ICANN co-operate APIGA since 2016, which has trained 422 graduates from 32 countries. Local APIGA programs now operate in 10 Asia-Pacific countries. An 'APIGA+10' task force is being established in July 2026 in Busan to transform APIGA into a global internet governance talent development program.
  • United Nations Internet Governance Forum (IGF) Multistakeholder Advisory GroupminorStrategic or Co-development Partner · 9 June 2026Met with UN IGF Multistakeholder Advisory Group chair at ICANN meeting to discuss APIGA development and expand internet governance cooperation globally.
  • DotAsia (닷아시아)coreStrategic or Co-development Partner · 8 June 2026KISA and DotAsia signed an MOU at the 86th ICANN meeting to cultivate internet governance talent for the Asia-Pacific region. DotAsia manages the .asia ccTLD, hosts the Asia-Pacific Internet Governance Forum, and supports youth capacity building education.
  • ICANN (International Corporation of Assigned Names and Numbers)coreStrategic or Co-development Partner · 8 June 2026KISA co-operates the Asia-Pacific Internet Governance Academy (APIGA) with ICANN since 2016. At the 86th ICANN meeting, KISA shared APIGA's 10-year achievements and discussed plans to expand APIGA into a global program with an 'APIGA+10' task force.
  • APTLD (Asia Pacific Domain Name System Regional Internet Registry)minorStrategic or Co-development Partner · 8 June 2026KISA met with APTLD secretariat and other regional internet policy organizations at the ICANN meeting to discuss APIGA development and promote participation in the APIGA+10 task force.
  • Japan Network Information Center (JPNIC)minorStrategic or Co-development Partner · 8 June 2026Met with JPNIC at ICANN meeting to discuss APIGA development and cooperation in internet governance education for the Asia-Pacific region.
  • Vietnam Internet Network Information Center (VNNIC)minorStrategic or Co-development Partner · 8 June 2026Met with VNNIC at ICANN meeting to discuss APIGA development and regional internet governance cooperation.
  • Taiwan Network Information Center (TWNIC)minorStrategic or Co-development Partner · 8 June 2026Met with TWNIC at ICANN meeting to discuss APIGA development and cooperation in internet governance education.
  • Indonesia Communications and Information Technology Association (Kominfo)coreStrategic or Co-development Partner · 4 June 2026KISA co-hosted the '2026 AI Era Korea-Indonesia Information Protection Partnership Day' with Indonesian communication association, attended by 120+ Indonesian officials and business representatives. Seminar covered telecom and financial cybersecurity policies, and 10 Korean security companies conducted 1:1 business meetings with Indonesian organizations.
  • 10 Korean Information Security Companies (Korea-Indonesia Partnership)coreStrategic or Co-development Partner · 4 June 2026Participating companies in the Korea-Indonesia Information Protection Partnership Day included Piolink, Raon S+ecure, NPCORE, WinningI, LSWARE (telecom sector) and QuadMiner, MarkAny, Eagle Corp, PNSecure, WIZCORE (financial sector), engaging in seminars and 1:1 business meetings with Indonesian organizations.
  • AnthropicflagshipTechnology or Integration · 3 June 2026Korea joined Anthropic's Project Glasswing through KISA, gaining access to the Claude Mythos AI model for expert-level vulnerability detection. The initiative expanded to approximately 150 organizations across 15 countries. Samsung Electronics, SK hynix, and SK Telecom were expected to join as new partners, having previously participated in Anthropic's Series H funding round.
  • Ministry of Science and ICTcoreStrategic or Co-development Partner · 29 May 2026At the 9th science and technology ministers meeting, KISA and the ministry announced measures to strengthen private sector cybersecurity response systems, including establishing an AI-powered emergency system under the Office of National Security and a vulnerability management center under KISA monitoring 1,200 major companies.
  • OpenAI (Digital Defense Partnership)flagshipTechnology or Integration · 29 May 2026Korea announced expanded cooperation with OpenAI for digital defense response and information sharing as part of its cybersecurity system transformation plan, leveraging homegrown AI technologies starting in 2027.
  • OpenAIflagshipTechnology or Integration · 27 May 2026South Korea became the first Asian country alongside Japan to join OpenAI's Daybreak cybersecurity initiative under the Governmental Trusted Access for Cyber (GTAC) program. KISA oversees the program's implementation, granting Korean institutions access to advanced AI models including GPT-5.5-Cyber for defensive cybersecurity purposes. OpenAI plans to expand access to private companies in key Korean industries.

Scale indicators19 records

Recent moves7 records

Expansion highlights7 records

Korea Internet & Security Agency competitors and assessment

Company assessment

Direct peers

  • Cybersecurity and Infrastructure Security Agency (CISA): CISA is the United States' national cybersecurity regulator and infrastructure protection agency, operating an incident response capability and national vulnerability management programs. It is the most direct functional peer to KISA, sharing the same combination of regulatory authority, CERT coordination, and national critical-infrastructure monitoring.
  • European Union Agency for Cybersecurity (ENISA): ENISA is the EU's dedicated cybersecurity agency responsible for supporting member states with incident response preparedness, certification frameworks, and cross-border cooperation. Comparable to KISA's role as Korea's central cybersecurity coordinator under the Ministry of Science and ICT.
  • JPCERT Coordination Center (JPCERT/CC): JPCERT/CC is Japan's national computer emergency response team and a leading CERT in the Asia-Pacific region. It mirrors KISA's KrCERT/CC function, providing incident handling, vulnerability disclosure coordination, and inter-agency cooperation.
  • National Cyber Security Centre (NCSC-UK): The UK's NCSC is a government authority providing authoritative cyber incident response, technical guidance, and certification for critical sectors. Comparable to KISA in regulatory breadth, public-facing 24/7 incident reporting, and close coordination with major private-sector entities.
  • Bundesamt für Sicherheit in der Informationstechnik (BSI Germany): BSI is Germany's federal cybersecurity authority and KISA's bilateral counterpart under the 2024 mutual recognition arrangement for IT security labels (the BSI IT Security Label program now applied to Samsung products). Comparable in regulatory scope, certification authority, and international cooperation mandate.
  • CERT-In (Indian Computer Emergency Response Team): CERT-In is India's national CERT under the Ministry of Electronics and IT, responsible for incident response, cybersecurity advisories, and vulnerability handling for critical sectors. Operates a similar mandate to KISA's KrCERT/CC, scaled for a much larger digital economy.
  • Cyber Security Agency of Singapore (CSA): CSA is Singapore's national cybersecurity agency overseeing national cyberdefense, critical-infrastructure protection, and ecosystem development - functionally equivalent to KISA across regulatory authority and talent development.
  • CNCERT/CC (National Computer Network Emergency Response Technical Team, China): CNCERT/CC is China's national CERT coordinating incident response, vulnerability disclosure, and international cooperation. Geopolitically distinct but operationally the closest functional peer to KISA's KrCERT/CC in scale and national coordination role.
  • Australian Signals Directorate / Australian Cyber Security Centre (ACSC): The ACSC sits within the Australian Signals Directorate and provides whole-of-government cyber security services, including incident response and critical-infrastructure engagement. Mirrors KISA's combined regulatory, incident response, and SME outreach posture.

Broad incumbents

  • National Institute of Standards and Technology (NIST) Cybersecurity Division: NIST develops cybersecurity standards, frameworks (CSF, NICE), and cryptographic guidelines (including the post-quantum cryptography standards KISA is piloting) used globally. It is a broader standards-setting peer to KISA's cybersecurity architecture and certification work, particularly the cryptomodule verification service.

Market position

Strengths4 records

Weaknesses4 records

Competitive moat6 records

Key risks5 records

Key highlights6 records

Customer concentration

Korea Internet & Security Agency social profiles

Digital presence

Korea Internet & Security Agency compliance and trust

Trust signal

Compliance2 records

Korea Internet & Security Agency financial estimates

Financial estimate

Revenue estimate

Valuation estimate

Korea Internet & Security Agency leadership team

Management profile

Number of profiles

Profiles8 records

Korea Internet & Security Agency subsidiaries and ownership

Company hierarchy

Subsidiaries16 records

Korea Internet & Security Agency funding detail

Funding detail

Funding overview

Funding rounds

Investors

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

Korea Internet & Security Agency M&A and investment

M&A and investment

M&A

Investments2 records

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Frequently asked questions about Korea Internet & Security Agency

What does Korea Internet & Security Agency do?

KISA operates South Korea's national cybersecurity infrastructure, providing 24/7 cyber incident response via KrCERT/CC, free cybersecurity support programs for SMEs (including security investment guides, attack surface checks, software supply chain diagnostics, penetration testing, and the Technology Guardian Service), WHOIS and .kr domain administration, illegal spam reporting and blocking, biometric (palm vein, facial) certification for the financial sector, AI-powered vulnerability management for approximately 1,200 critical-industry companies, and cybersecurity talent development through KISA Academy (K-Shield, White Hat School, BoB). The agency coordinates the National Network Security Framework (N2SF), runs the post-quantum cryptography pilot for finance, and delivers the APIGA internet governance program across 32 countries in partnership with ICANN.

Is Korea Internet & Security Agency a public or private company?

Korea Internet & Security Agency is a private company. It is classified as state government owned and is currently operating.

When was Korea Internet & Security Agency founded?

Korea Internet & Security Agency was founded in 2003. It employs 501 to 1,000 people.

Where is Korea Internet & Security Agency based?

Korea Internet & Security Agency is headquartered in Naju, South Korea, in the Asia region.

How does Korea Internet & Security Agency make money?

One revenue line is on record: government Budget Allocation.

Who are Korea Internet & Security Agency's main competitors?

Direct peers on record are Cybersecurity and Infrastructure Security Agency (CISA), European Union Agency for Cybersecurity (ENISA), JPCERT Coordination Center (JPCERT/CC), National Cyber Security Centre (NCSC-UK), Bundesamt für Sicherheit in der Informationstechnik (BSI Germany), CERT-In (Indian Computer Emergency Response Team), Cyber Security Agency of Singapore (CSA), CNCERT/CC (National Computer Network Emergency Response Technical Team, China) and Australian Signals Directorate / Australian Cyber Security Centre (ACSC). National Institute of Standards and Technology (NIST) Cybersecurity Division is listed as a broad incumbent.

Does Korea Internet & Security Agency have an API?

Yes. KISA provides WHOIS OpenAPI for domain registration information lookup and IP address/AS number queries. The service enables programmatic access to WHOIS data including domain availability checks, registration details, and related information. An API key is required for access. Developer documentation is at whois.kr/kor/openkey/keyCre.do.

What industry is Korea Internet & Security Agency in?

Korea Internet & Security Agency's product category is National Cybersecurity Services. Its primary akta.pro industry code is BPAEAAAL, Cybersecurity Architecture & Security Integration, with a secondary code of HDADAIAJ, Security Awareness, Training & Compliance Attestation. Its NAICS code is 928110.

Unlock the full company data

50 free credits on sign-up, no credit card required.

Contact sales
Live signals
NateChuseok holiday preparation for public cybersecurity inspection: Nate NewsSong Gi-ho, 3rd Deputy Director of the National Security Office, visited the Korea Internet & Security Agency's joint cyber situation room on September 23 to check cyber threat monitoring and emergency response during the Chuseok holiday. The visit included agency officials Lee Sang-jung and Kim Hwi-gang.TechRepublicSouth Korea Drafts AI Agent Security RulesSouth Korea's Korea Internet & Security Agency is drafting version 2.0 of its AI Security Guide, covering autonomous AI agents across software, networks, and physical systems. The guide would require human approval for high-risk actions and include access controls, audit logs, and shutdown tools. The agency has not finalized the guide, so exact requirements remain unclear.Nate'I asked my son every time'... An 80-year-old who received smishing prevention education has changed: Nate NewsIn August, 15 seniors over 60 at a Seoul welfare center attended a smishing and messenger phishing prevention lecture led by retired police officers. They practiced using the Korea Internet & Security Agency's 'Protection Country' service to filter scam messages. The center hopes to hold more such education.SBSKISA Launches Head-Direct Innovation TF to Boost Cybersecurity CompetitivenessThe Korea Internet & Security Agency (KISA) has launched a company-wide innovation task force led by its president to enhance cybersecurity competitiveness and operational efficiency. The initiative is structured around management and business innovation pillars, focusing on AI transformation, cyber threat response, and future security technologies like post-quantum cryptography.AijournAPIGA Celebrates 10 Years of Developing the Next Generation of Internet LeadersThe Asia Pacific Internet Governance Academy (APIGA) marked its 10th anniversary on July 24, 2026, during a special ceremony in Busan, South Korea, commemorating a decade of preparing youth leaders to shape Internet governance across the Asia Pacific region. Since its launch in 2016, the program has trained more than 359 participants from 32 economies, expanding in 2024 to include local APIGA programs now operating in ten economies. The academy is co-hosted by ICANN and the Korea Internet & Security Agency, alongside regional partners including the Asia Pacific Network Information Center, DotAsia, and the Internet Society.PR Newswire APACAPIGA Celebrates 10 Years of Developing the Next Generation of Internet LeadersThe Asia Pacific Internet Governance Academy (APIGA) celebrated its 10th anniversary at a ceremony in Busan, South Korea on July 24, 2026, marking a decade of preparing youth leaders to shape Internet governance across the Asia Pacific region. Since its launch in 2016, the program has trained more than 359 participants from 32 economies, expanding in 2024 to include local APIGAs now present in ten economies. ICANN and the Korea Internet & Security Agency co-host the annual five-day workshop alongside regional partners including the Asia Pacific Network Information Center, DotAsia, and the Internet Society.PR NewswireAPIGA celebra sus 10 años dedicados a formar a la próxima generación de líderes de InternetThe Asia-Pacific Internet Governance Academy (APIGA) marked its 10th anniversary at a ceremony held in Busan, South Korea, on July 24, 2026, during its 10th annual edition. Since its launch in 2016, the program has trained over 359 participants from 32 economies, creating a network of future policy makers, technical experts, and Internet governance leaders across the region. The initiative, jointly organized by ICANN and the Korea Internet and Security Agency, expanded in 2024 with local editions that have since reached ten economies.PR NewswireAPIGA Celebrates 10 Years of Developing the Next Generation of Internet LeadersThe Asia Pacific Internet Governance Academy (APIGA) celebrated its 10th anniversary at a ceremony in Busan, South Korea on July 24, 2026, marking a decade of preparing youth leaders to shape Internet governance across the Asia Pacific region. Since its launch in 2016, the program has trained over 359 participants from 32 economies, with regional chapters expanding to ten economies since 2024. The academy is co-hosted by ICANN and the Korea Internet & Security Agency, alongside regional partners including APNIC, DotAsia, and the Internet Society.FinanzNachrichten.deAPIGA Celebrates 10 Years of Developing the Next Generation of Internet LeadersThe Asia Pacific Internet Governance Academy (APIGA) celebrated its 10th anniversary in Busan, South Korea, marking a decade of preparing youth leaders to shape the future of the Internet across the Asia Pacific region. Since its launch in 2016, more than 359 participants from 32 economies have completed the academy, building a network of future policymakers, technical experts, academics, and Internet governance leaders. The program, co-hosted by ICANN and the Korea Internet & Security Agency with regional partners, has also expanded since 2024 with local APIGA programs now operating in ten economies.BiggoSouth Korea Invests $6.5 Million to Expand Deposit Token Payment Infrastructure, Easing Fee Burden on Small Businesses — BigGo FinanceSouth Korea's Ministry of Science and ICT and the Korea Internet & Security Agency (KISA) are launching a 9.6 billion won (approximately $6.5 million) initiative to expand deposit token-based payment infrastructure, extending the Bank of Korea's CBDC pilot 'Project Hangang' into private-sector payments. The Korea Financial Telecommunications & Clearings Institute (KFTC) is leading a consortium of nine commercial banks, including NongHyup Bank, and eight payment gateway providers to reduce payment processing fees for small business owners, with existing card terminals usable without modification. The government also plans to apply this blockchain infrastructure to public finance management, integrating it with the national fiscal information system 'dBrain' to enhance transparency in state fund disbursement.