Information Security Policy
ALBACONNECT Inc. (hereinafter referred to as "the Company") strives to earn the trust of customers and society by properly handling information assets held or managed by the Company and protecting them from risks such as leakage, tampering, and unauthorized access.
The Company is committed to ensuring, maintaining, and improving information security based on the following policies to achieve appropriate protection and safe management of information assets.
ISMS certification
Our information security management system has been independently certified as conforming to ISO/IEC 27001. This certification applies to the management system within the certified scope; it does not certify individual products or services.
- Organization
- ALBACONNECT Inc.
- Registration number
- MSA-IS-861
- Standard
- JIS Q 27001:2025 (ISO/IEC 27001:2022 + Amd 1:2024)
- Certified on
- September 28, 2026
- Valid until
- September 27, 2029
- Certified scope
- Web systems development: planning, design, development, operation, and maintenance of web applications and systems
- Digital consulting: consulting for corporate digital transformation (DX) and AI transformation (AX)
- AI agent development: development and provision of solutions and products using artificial intelligence technologies
- Proprietary service development: development, provision, and operation of internally planned cloud services and software
MSA-IS-861
1. Purpose
This policy aims to ensure and maintain the Company's information security by establishing basic policies for appropriately protecting and safely managing information assets held or managed by the Company.
2. Scope of Application
This policy applies to information assets handled by all parties involved in the Company's business activities, including officers, employees, contract workers, temporary staff, and outsourced contractors.
It also covers services, systems, networks, cloud environments, and related facilities provided by the Company.
3. Information Security Management Structure
The Company establishes an organisational structure for appropriately managing information security, centered on management, and defines regulations, procedures, and management standards for information security, operating them appropriately.
Furthermore, the Company clarifies responsibilities and authorities related to information security and implements organisational management.
4. Management of Information Assets
The Company recognizes the importance of information assets it holds or manages from the perspectives of confidentiality, integrity, and availability, conducts risk assessments, and implements appropriate protective measures.
The Company also establishes and appropriately operates management procedures for the acquisition, use, storage, transfer, and disposal of information assets.
5. Improving Information Security Literacy
The Company continuously provides education and training on information security to all employees to improve information security awareness and literacy.
6. Incident Response
In the event of an information security incident, violation, or suspected violation, the Company will respond promptly and appropriately to minimize damage, investigate the cause, and prevent recurrence.
7. Compliance with Laws and Contracts
The Company complies with applicable laws, regulations, and contractual obligations in its business activities.
8. Business Continuity Management
The Company strives to establish a management system to minimize the risk of business interruption due to disasters, system failures, human errors, fraud, etc., and to ensure business continuity.
9. Measures for Policy Violations
Employees of the Company shall act in accordance with this basic policy, and violations may be subject to disciplinary action based on employment regulations.
10. Continuous Improvement
The Company continuously reviews and improves its information security management structure and measures based on audit results, risk assessments, incident response results, and changes in the business environment.
11. Contact Information
For inquiries regarding information security, please contact us below.
ALBACONNECT Inc.
Toranomon Hills Business Tower 16F, 1-17-1 Toranomon, Minato-ku, Tokyo 105-6416
Contact form:here
Established: March 17, 2026
