Information Security Policy

microCMS Inc. (hereinafter, "the Company") protects its information assets and those entrusted to us by customers from threats such as accidents, disasters, and crime. To earn the trust of our customers and society, the entire company is committed to information security based on the following policy.

1. Management responsibility

The Company strives to improve and enhance information security organizationally and continuously under management leadership.

2. Internal system development

The Company establishes an organization to maintain and improve information security and defines information security measures as formal internal rules.

3. Employee initiatives

Employees acquire the knowledge and skills required for information security and ensure that our commitment to information security is reliable.

4. Compliance with legal and contractual requirements

The Company complies with laws, regulations, norms, and contractual obligations related to information security and meets customer expectations.

5. Response to violations and incidents

When violations of laws, breaches of contract, or incidents related to information security occur, the Company responds appropriately and strives to prevent recurrence.

ISMS certification overview

ISMS
IS 763028 / ISO 27001

Certification standard

ISO/IEC 27001:2022 / JIS Q 27001:2023

Registered organization

microCMS Inc.

Certification number

IS 763028

Scope of certification

Development and operation of SaaS web services

Initial registration date

2022/04/22

Last updated

2025/04/05

Expiration date

2028/04/21

Certification body

BSI Group Japan K.K.

Enacted: November 1, 2021
microCMS Inc.
Representative Director and President, Kazuyoshi Shibata