ALBACONNECT

Information Security Policy

ALBACONNECT Inc. (hereinafter referred to as "the Company") strives to earn the trust of customers and society by properly handling information assets held or managed by the Company and protecting them from risks such as leakage, tampering, and unauthorized access.

The Company is committed to ensuring, maintaining, and improving information security based on the following policies to achieve appropriate protection and safe management of information assets.

ISMS certification

Our information security management system has been independently certified as conforming to ISO/IEC 27001. This certification applies to the management system within the certified scope; it does not certify individual products or services.

Organization
ALBACONNECT Inc.
Registration number
MSA-IS-861
Standard
JIS Q 27001:2025 (ISO/IEC 27001:2022 + Amd 1:2024)
Certified on
September 28, 2026
Valid until
September 27, 2029
Certified scope
  1. Web systems development: planning, design, development, operation, and maintenance of web applications and systems
  2. Digital consulting: consulting for corporate digital transformation (DX) and AI transformation (AX)
  3. AI agent development: development and provision of solutions and products using artificial intelligence technologies
  4. Proprietary service development: development, provision, and operation of internally planned cloud services and software

1. Purpose

This policy aims to ensure and maintain the Company's information security by establishing basic policies for appropriately protecting and safely managing information assets held or managed by the Company.

2. Scope of Application

This policy applies to information assets handled by all parties involved in the Company's business activities, including officers, employees, contract workers, temporary staff, and outsourced contractors.

It also covers services, systems, networks, cloud environments, and related facilities provided by the Company.

3. Information Security Management Structure

The Company establishes an organisational structure for appropriately managing information security, centered on management, and defines regulations, procedures, and management standards for information security, operating them appropriately.

Furthermore, the Company clarifies responsibilities and authorities related to information security and implements organisational management.

4. Management of Information Assets

The Company recognizes the importance of information assets it holds or manages from the perspectives of confidentiality, integrity, and availability, conducts risk assessments, and implements appropriate protective measures.

The Company also establishes and appropriately operates management procedures for the acquisition, use, storage, transfer, and disposal of information assets.

5. Improving Information Security Literacy

The Company continuously provides education and training on information security to all employees to improve information security awareness and literacy.

6. Incident Response

In the event of an information security incident, violation, or suspected violation, the Company will respond promptly and appropriately to minimize damage, investigate the cause, and prevent recurrence.

7. Compliance with Laws and Contracts

The Company complies with applicable laws, regulations, and contractual obligations in its business activities.

8. Business Continuity Management

The Company strives to establish a management system to minimize the risk of business interruption due to disasters, system failures, human errors, fraud, etc., and to ensure business continuity.

9. Measures for Policy Violations

Employees of the Company shall act in accordance with this basic policy, and violations may be subject to disciplinary action based on employment regulations.

10. Continuous Improvement

The Company continuously reviews and improves its information security management structure and measures based on audit results, risk assessments, incident response results, and changes in the business environment.

11. Contact Information

For inquiries regarding information security, please contact us below.

ALBACONNECT Inc.

Toranomon Hills Business Tower 16F, 1-17-1 Toranomon, Minato-ku, Tokyo 105-6416

Contact form:here

Established: March 17, 2026