Security Policy

Pulax Co., Ltd. (hereinafter referred to as "the Company") is committed to ensuring information security based on the following policies to appropriately protect information assets such as customer information, transaction information, and technical information related to design and manufacturing.

1. Scope of Application

The Company establishes this basic policy to protect information assets of customers and the Company from both intentional and accidental threats, internal and external, and to ensure business continuity. This policy applies to all information assets handled by the Company.

2. Establishment of Internal Structure

The Company will establish and maintain an information security management system to properly protect and manage all information assets it holds. Information security managers will be appointed in relevant departments, the company-wide management status will be regularly assessed, and necessary measures based on risk analysis will be promptly implemented. The structure and regulations will be reviewed as appropriate in response to changes in business or laws.

3. Compliance with Laws, Regulations, and Contractual Matters

The Company will comply with relevant laws, regulations, and contracts, and conduct appropriate information management in accordance with regulations, procedures, and rules established by the Company.

4. Protection of Information Assets

The Company will formulate organizational and technical management measures from the perspectives of prevention and correction to ensure the confidentiality, integrity, and availability of information assets, and will operate and continuously improve them.

5. Improving Information Security Literacy

The Company will continuously provide education and training to improve the information security literacy of all employees and related parties, and to properly manage and operate the Company's information assets.

6. Incident Response

When the Company becomes aware of the occurrence or indication of a security incident or accident, it will immediately report to the relevant department and promptly conduct fact confirmation, impact assessment, prevention of expansion, recovery, cause analysis, and measures to prevent recurrence.

7. External Contractor Management

When third parties may have access to information assets, the Company will enter into necessary contracts according to the confidentiality level of the information handled, and take measures necessary to ensure and maintain information security.

8. Implementation of Continuous Improvement

The Company will regularly evaluate and review the effectiveness of information security management, and make continuous improvements based on changes in laws and the business environment.

Last Revised: October 21, 2025

Back to Top