Approach to Information Security

Below are the details of GMO Internet Inc.’s approach to information security and the related policy.

About ISO 27001 Certification

In order for GMO Internet to protect information assets from various threats, reduce risks and establish an information security management system (ISMS) for our business focused cloud services, we have acquired the international standard in accreditation - ISO 27001 certification.
ISO 27001 is the international standard in information security management designed to maintain the confidentiality, integrity and availability of information for all types of information assets.

Certificate Information

Company Name GMO Internet, Inc.
Certification Standard JIS Q 27001: 2014 (ISO/IEC 27001: 2013)
Certificate Number IS 666319
Certifying Body ISR004
Issue Date April 10, 2017
Address Cerulean Tower, 26-1 Sakuragaokacho, Shibuya-ku, Tokyo
Scope of Registration The running, planning, and development of business focused cloud services, which are provided by the Business Division’s Cloud Department, the Network Solutions Team from the System Division’s Infrastructure Development Department and the System Division’s System Operation Development Department.

Information Security Policy

Overview

At GMO Internet, Inc. (GMO), we recognize that it is our social responsibility to properly guard both the information assets of our customers and that of our business, and in order to do so we have created an information security management system which we manage, revise, preserve, and improve in-house. Likewise, we make sure to abide by information security related regulations and guidelines instituted by the nation of Japan, as we recognize that the management of information security is a vital part of our corporate activities. We aim to protect information security with the policy listed below.

Policies

  1. The Purpose of Information Security

    By adequately enforcing our information security management system, we can prevent incidents related to the leakage, falsification and theft of information. Thus, our main reason for having an information security management system is to establish a trust based relationship with both customers and society.

  2. Governing Laws

    GMO observes all laws and regulations related to the protection of personal information and information security as well as the content of contracts with our customers.

  3. Maintenance System

    We aim to advance information security by creating a system that will continually enforce and improve our business activities based on our policy.

  4. Education and Training Towards Improved Understanding of Information Security

    At GMO, we aim to educate and train both our directors and all employees regarding information security, and by helping each individual to understand the importance of an information security management system, we can improve everyone’s information ethics as well as better circulate information on related regulations.

  5. Regular Revision and Continual Improvement

    GMO strives to both regularly revise and continually improve the information security management system that we have put in place.

Enacted On: January 1, 2017

Managing Director Hiroyuki Yamashita

TOP