Information Security Policy
Fundamental Philosophy
Integrated Health Science Inc. (hereinafter referred to as “our company”) operates with the philosophy of “maximizing individual health.” The information assets we handle in our business, including customer information, are extremely important as the foundation of our company’s management.
Recognizing the importance of protecting information assets from risks such as leakage, damage, and loss, all those who handle information assets, including executives and employees, will comply with this policy and practice activities to maintain information security, such as the confidentiality, integrity, and availability of information assets.
Basic Policy
- To protect information assets, we will establish information security policies and related regulations and conduct business in accordance with them. We will also comply with laws, regulations, and other norms related to information security, as well as contractual matters with customers.
- We will clarify the criteria for analyzing and evaluating risks such as leakage, damage, and loss of information assets, establish a systematic risk assessment method, and regularly conduct risk assessments. Based on the results, we will implement necessary and appropriate security measures.
- We will establish an information security system centered around responsible executives and clarify the authority and responsibility related to information security. In addition, all employees will regularly receive education, training, and awareness to ensure the proper handling of information assets, recognizing the importance of information security.
- We will regularly inspect and audit the compliance with the information security policy and the handling of information assets. Any deficiencies or areas for improvement that are identified will be promptly corrected.
- We will take appropriate measures against the occurrence of information security events and incidents. In the event that they do occur, we will establish procedures in advance to minimize damage and respond promptly in an emergency, taking appropriate corrective actions. In particular, for incidents related to business interruption, we will establish a management framework and regularly review it to ensure the continuity of our business.
- We will establish an information security management system with goals to realize our fundamental philosophy and execute it while continuously reviewing and improving it.
Enacted on March 1, 2024
Revised on June 17, 2024
Integrated Health Science Co., Ltd.
Chief Exective Officer, Yasuyoshi Watanabe