Legal
Information Security Policy
Trial Group (representing TRIAL Holdings, Inc. and its group companies) formulated the Information Security Policy in order to gain the trust of our customers and society at large at all times by establishing a strict management system against information leak risks.
Trial Group shall comply with the Information Security Policy and strive to maintain information security by protecting information assets from various threats and by handling them appropriately.
1. Establishment of Information Security Management Systems
Trial Group shall strive to protect all information assets held by Trial Group and comply with laws, regulations, and other rules related to information security to establish strict information security management systems so that Trial Group can always gain the trust of society.
2. Assignment of Chief Information Officer (CIO)
Trial Group shall appoint a Chief Information Officer (CIO) and organize an Information Security Committee. Thereby, Trial Group shall assure an accurate assessing the status of information security throughout the company and proactively implement necessary measures in a timely manner.
3. Establishment of Internal Rules for Information Security
Trial Group shall establish internal rules based on the Information Security Policy to clearly state our policy on the handling of not only personal information but also information assets in general, and to make it known internally and externally that Trial Group shall take a strict attitude toward information security incidents, such as information leaks.
4. Reinforcement of Management System for Outsourcing Partners
When concluding an outsourcing contract, Trial Group shall fully investigate the suitability of the outsourcing party, conclude a contract necessary to protect information assets and maintain confidentiality, and conduct appropriate supervision.
5. Implementation of Education and Training
Trial Group shall provide our employees with thorough information security education and training so that all members involved with the Trial Group's information assets can perform their duties with an awareness of the importance of information security.
6. Continuous Improvement of Information Security
To realize appropriate management systems according to the purpose of use and importance of information assets, Trial Group shall identify threats to information assets and continuously analyse and evaluate risks. Based on the risk assessment results, Trial Group shall implement reasonable information security measures against the identified threats and strive to safely manage information assets.
7. Others
Personal information shall be managed in accordance with the " Privacy Policy" published separately.
Date of Enactment:October 3, 2018
Date of Last Revision:November 22, 2022