Approach to Information Security

Below are the details of GMO Internet Inc.'s approach to information security and the related policy.

About ISO 27001 Certification

In order for GMO Internet to protect information assets from various threats, reduce risks and establish an information security management system (ISMS) for our business focused cloud services, we have acquired the international standard in accreditation - ISO 27001 certification.
ISO 27001 is the international standard in information security management designed to maintain the confidentiality, integrity and availability of information for all types of information assets.

IS 666319 / ISO27001
ITMS 666320 / ISO20000-1

Certificate Information

Company Name GMO Internet, Inc.
Certification Standard JIS Q 27001: 2014 (ISO/IEC 27001: 2013)
Certificate Number IS 666319
Certifying Body ISR004
Issue Date April 10, 2017
Address CERULEAN TOWER, 26-1 Sakuragaoka-cho,  Shibuya-ku, Tokyo 150-8512 Japan

3-1-1 Kyomachi,  Kokurakita-ku, Kitakyushu-shi, Fukuoka 802-0002 Japan
Scope of Registration The sales, planning, development, operation and monitoring of cloud service of Hosting Business
Department Business Solution Team, Cloud Service Development Department, Network Development
Team, Hardware Solutions Team, Operation and Maintenance Team, Operation Monitoring Team, Operation
Engineering Team, SOC Team and ConoHa/Z.com Team and KaKing Development Team.

Information Security Policy

Overview

At GMO Internet, Inc. (GMO), we recognize that it is our social responsibility to properly guard both the information assets of our customers and that of our business, and in order to do so we have created an information security management system which we manage, revise, preserve, and improve in-house. Likewise, we make sure to abide by information security related regulations and guidelines instituted by the nation of Japan, as we recognize that the management of information security is a vital part of our corporate activities. We aim to protect information security with the policy listed below.

Policies

  1. The Purpose of Information Security

    By adequately enforcing our information security management system, we can prevent incidents related to the leakage, falsification and theft of information. Thus, our main reason for having an information security management system is to establish a trust based relationship with both customers and society.

  2. Governing Laws

    GMO observes all laws and regulations related to the protection of personal information and information security as well as the content of contracts with our customers.

  3. Maintenance System

    We aim to advance information security by creating a system that will continually enforce and improve our business activities based on our policy.

  4. Education and Training Towards Improved Understanding of Information Security

    At GMO, we aim to educate and train both our directors and all employees regarding information security, and by helping each individual to understand the importance of an information security management system, we can improve everyone's information ethics as well as better circulate information on related regulations.

  5. Regular Revision and Continual Improvement

    GMO strives to both regularly revise and continually improve the information security management system that we have put in place.

Enacted On: January 1, 2017

Executive Vice President Hiroyuki Yamashita

TOP