Infomation Security

1. Purpose

  SUN Electronic Industries Corporation (hereinafter referred to as “our company”) provides its products while building and maintaining trust with its customers.
We recognize that protecting information assets and personal information, and ensuring the security of our customers, business partners, and affiliated companies, is a critical social responsibility and an essential requirement for the sustainable operation of our business.
To this end, our company ensures that its employees and partner company personnel properly understand the value of the information they handle and act in compliance with information security requirements. We continuously strive to raise awareness and enhance information security literacy through appropriate education and training.
Our company hereby establishes this Information Security Policy to define its fundamental approach to information security and to promote continuous improvement and implementation of information security measures across the organization and its partners.

2. Scope of Application

  This basic policy applies to all employees of our company and employees of partner companies that fall within the scope of the ISMS as defined in our company’s ISMS organizational structure.

3. Information Security Policy

1. Establishment, Maintenance, and Improvement of the Information Security Management System

To establish and continuously maintain an Information Security Management System (ISMS), our company shall establish an appropriate organizational structure and framework, conduct regular reviews, and pursue continual improvement.

2. Implementation of Appropriate Information Security Measures

To ensure confidentiality, integrity, and availability of information assets, our company shall implement appropriate organizational and technical information security measures.

3. Compliance with Information Security Regulations and Laws

In order to protect information assets entrusted to us by our customers as well as our own information assets from various threats, our company shall comply with a balanced set of physical, human, and technical security regulations, together with applicable laws and regulations.
Any violations of these rules shall be dealt with strictly.

4. Risk Analysis and Risk Assessment

Our company shall clearly define management methods for information assets that require protection, analyze threats and vulnerabilities, and assess the associated risks.
Based on the results of risk assessments, risks that have a significant impact on critical information assets shall be addressed with the highest priority.

5. Education and Training

Our company shall regularly provide information security education and training to all persons working for our company, in order to ensure that each individual fully understands the importance of ISMS activities and complies with relevant rules and regulations.

Date of Establishment; November 21, 2024
SUN Electronic Industries Corporation
President Masaki Isogaki