SECURITY POLICY

Security Policy

For us, information assets (information and information systems, etc.) are the most important assets as well as the source of generating profits in the provision of cloud services and related business activities. Preventing information security incidents is a social responsibility. In order to protect information assets from information security threats, we handle information assets accurately and safely to achieve information security in line with our management strategy and to live up to the trust of our customers.

We have established the following security objectives and will ensure that all measures are implemented to achieve these objectives.

We will respect contracts with our customers and legal or regulatory requirements.
Prevent information security incidents before they occur.
We will protect information assets from information security threats.

WE SHALL APPROPRIATELY ESTABLISH AND OPERATE AN INFORMATION SECURITY MANAGEMENT SYSTEM (ISMS) BY EXPRESSING MANAGEMENT'S INTENT REGARDING OUR COMMITMENT TO INFORMATION SECURITY AND CLARIFYING THE MAIN ACTION GUIDELINES BASED ON THIS INTENT, AND SHALL STRIVE TO ENSURE THE CONFIDENTIALITY, INTEGRITY, AND AVAILABILITY OF OUR IMPORTANT INFORMATION ASSETS, AND SHALL CONTINUOUSLY ENSURE THE EFFECTIVENESS OF THE ISMS. WE WILL CONTINUOUSLY ENSURE THE EFFECTIVENESS OF OUR INFORMATION SECURITY MANAGEMENT SYSTEM (ISMS).

3. WE SHALL ESTABLISH AN INFORMATION SECURITY MANAGER AND AN INFORMATION SECURITY COMMITTEE FOR THE OPERATION OF ISMS, AND MAINTAIN THE NECESSARY ORGANIZATIONAL STRUCTURE FOR ITS OPERATION.

In order to maintain the risk of all important information assets handled at an acceptable level, we have established systematic procedures and evaluation standards for risk assessment, and take appropriate risk countermeasures based on risk assessments.

WE REGULARLY PROVIDE TRAINING TO ALL EMPLOYEES TO MAINTAIN AND IMPROVE ISMS, AND MEASURE THE EFFECTIVENESS OF SUCH TRAINING.

The above
January 27, 2017
UPWARD, Inc.

UPWARD CO., LTD. HAS RECEIVED ISO/IEC27001:2022 / JIS Q 27001:2023 CERTIFICATION, AN INTERNATIONAL STANDARD FOR INFORMATION SECURITY MANAGEMENT SYSTEMS (ISMS). THIS ISMS CERTIFICATION PROVES THAT UPWARD HAS AN APPROPRIATE INFORMATION MANAGEMENT SYSTEM IN TERMS OF SECURITY, AS CERTIFIED BY A THIRD-PARTY CERTIFICATION ORGANIZATION. AN OVERVIEW OF THE CERTIFICATION IS AS FOLLOWS

Registration Number
IS 631188
Registered Organization
UPWARD, Inc.
Location
WeWork Hibiya FORT TOWER, 1-1-1 Nishi-Shinbashi, Minato-ku, Tokyo
Applicable Standards
ISO/IEC 27001:2022, JISQ 27001:2023, ISO/IEC 27017:2015, ISO/IEC 27018
Date of certification
May 21, 2015
Examination and registration organization
BSI GROUP JAPAN K.K.