QIP-0014 · passed
Adoption of ISO 27001 across all custody facilities
Authorize the Custody Subcommittee to adopt ISO 27001 information security certification across all operating facilities by Q3 2025.
- Proposer
- 0xCustody.eth
- Posted
- Nov 10, 2024
- Closes
- Nov 24, 2024
- For
- 19,450,000
- Against
- 1,200,000
- Abstain
- 350,000
Rationale
As custody operations expand internationally, institutional investors and regulators increasingly require formal information security assurance. ISO 27001 certification provides a universally recognized framework and strengthens the DAO’s risk profile.
Proposed action
Allocate 0.08% of Treasury reserves to audit, remediation, and certification costs. The Custody Subcommittee shall oversee implementation across all five facilities with target completion by Q3 2025. Annual recertification costs shall be budgeted thereafter.
Risk factors
Implementation timelines may slip due to facility-specific compliance requirements. Mitigation: phased rollout beginning with highest-risk facilities. Third-party auditor engagement ensures independence and credibility.