Information Security Policy
Established on October 1, 2021
The TOHO Group (hereinafter referred to as "the Group") recognizes the importance of the information assets it holds, including information entrusted to it by customers, and believes it has a responsibility to protect these information assets from various threats. Therefore, the Group has established the following basic policy regarding information security, and all officers and employees will comply with it as we work to implement information security measures.
-
Compliance with Laws and Regulations
The Group will comply with laws and regulations related to information security when implementing information security measures.
-
Internal Policies and Procedures
The Group will develop various internal policies and other procedures necessary for the implementation of information security measures and ensure thorough awareness among officers and employees.
-
Management System
The Group will establish an Information Security Committee to manage and operate information security within each Group company for the implementation and continuous operation of information security measures.
-
Education
The Group will continuously conduct necessary educational activities regarding information security for officers and employees and strive to enhance their awareness of compliance standards.
-
Response to Changes
The Group will continuously review information security measures and related rules to respond to new threats and changes in the environment.
-
Audit
The Group will regularly conduct audits to objectively evaluate the compliance status and validity of information security measures and strive for continuous improvement.