Basic Policy on Information Security

SASAL Co., Ltd. (hereinafter referred to as “the Company”) will work on information security company-wide based on the following policy in order to protect information assets entrusted to us by customers from threats such as accidents, disasters, and crimes, and to earn the trust of our customers and society.

1. Responsibility of management

The Company will systematically and continuously strive to improve and enhance information security under the leadership of management.

2. Establishment of internal systems

The Company shall establish an organization to maintain and improve information security, and establish information security measures as official internal rules.

3. Employee Initiatives

Our employees will acquire the knowledge and skills necessary for information security, and will ensure our efforts for information security.

4. Compliance with laws, regulations, and contractual requirements

We will comply with laws, regulations, norms, and contractual obligations related to information security and meet the expectations of our customers.

5. Response to violations and accidents

In the event of a violation of laws and regulations, a breach of contract, or an accident related to information security, we will take appropriate measures and strive to prevent recurrence.

Date of enactment: November 3, 2022SASAL