Simmtech Graphics Co., Ltd. has established an Information Security Basic Policy that sets forth management measures to protect information assets from threats such as alteration, destruction, leakage, and loss, regardless of whether such incidents occur intentionally or accidentally. This policy is communicated to all officers and employees of the Company to ensure awareness of the importance of information security. We are committed to appropriately protecting all information assets, which are valuable assets of both our customers and the Company, and to continuously improving information security.
1. Scope of Application
- This policy applies to all information related to business activities that are under the management and control of the Company.
2. Policy
- To maintain the confidentiality, integrity, and availability of information assets against threats such as tampering, destruction, leakage, loss, unauthorized access, and interference, the Company shall implement information security measures, take appropriate technical preventive actions, and strive to ensure the secure management of information assets.
3. Compliance with Rules and Regulations
- The Company shall comply with internal regulations, applicable laws and governmental guidelines, and other relevant standards related to information security, and shall carry out appropriate information management practices.
4. Education and Awareness
- The Company recognizes the importance of information security at all times and shall continuously provide education, training, and guidance on information management in order to ensure the secure management of information assets and promote employee awareness.
5. Continuous Improvement
- The Company shall continuously and objectively evaluate the effectiveness and appropriateness of its information security regulations and management framework, and shall review and improve them on an ongoing basis to adapt to changes in the social and business environment.
6. Prevention and Response to Security Incidents
- The Company shall strive to prevent information security incidents. In the event that an incident occurs, the Company shall respond promptly, take measures to minimize and prevent the spread of damage, and implement appropriate corrective and preventive actions without delay.