POLICY / 01

1. Information Security Initiatives (Basic Principles)

Guided by the principle “Dirt = risk; cleaning = risk mitigation,” Misesapo Co., Ltd. provides services to customers, workers, and partner companies.

We regard information assets—including customers’ personal information and payment details, work data, and business know-how—as “the most critical risk to business continuity.” Recognizing the importance of information security, we establish rules and guidelines for the proper management of information assets and strive to improve them continuously.

POLICY / 02

2. Compliance with Laws, Regulations, Standards, and Contracts

We strictly comply with laws and regulations concerning information security, government guidelines, industry guidelines, and our obligations under confidentiality agreements with customers.

POLICY / 03

3. Proper Management of Information Assets (Ensuring Confidentiality, Integrity, and Availability)

We take appropriate measures to manage the information assets we hold and ensure their confidentiality, integrity, and availability, preventing information leaks, tampering, loss, and unauthorized use.

  • Confidentiality: Access to information assets is restricted to authorized personnel.
  • Integrity: We manage information assets to ensure they are maintained accurately and kept up to date.
  • Availability: We maintain the operating environment so that the systems required to provide our services are reliably available when needed.

POLICY / 04

4. Implementing Security Measures

We implement multiple layers of technical and organizational safeguards to ensure the proper protection of information assets.

  • Strict access controls and encrypted communication (SSL/TLS) for payment information are required.
  • We promote security awareness among contractors and workers with whom we share information to provide our services, and supervise them to ensure that they manage information appropriately in accordance with their contracts.

POLICY / 05

5. Education and Training

We regularly provide the necessary education and training to all relevant parties, including management, employees, and outsourced workers, to ensure they fully understand the importance of information assets and information security, and to maintain and improve security awareness.

POLICY / 06

6. Responding to Information Security Incidents and Accidents

We work to prevent incidents and accidents. If one occurs, we will minimize its impact, promptly consider and implement measures to prevent recurrence, and establish a framework for disclosing information promptly and appropriately in accordance with applicable laws and regulations.