Information Security Policy

This page provides a summary of our Information Security Policy in English. The official policy is published in Japanese; in the event of any inconsistency, the Japanese version governs.

Basic Principles

GarageBank Corporation (the "Company") recognizes that the protection of information assets — including those of customers, partners, and the Company — is fundamental to our business. We are committed to maintaining the confidentiality, integrity, and availability of these assets and to delivering services that customers can use with confidence.

Policies

  1. Compliance: The Company complies with all laws, regulations, and contractual obligations relating to information security, and applies appropriate measures to all information assets.
  2. Risk management: We identify and assess information security risks and implement reasonable safeguards consistent with the risk level.
  3. ISMS framework: The Company operates an Information Security Management System certified to ISO/IEC 27001:2022 and JIS Q 27001:2023, and continuously improves its effectiveness.
  4. Education and training: All officers and employees receive ongoing training to embed information security awareness in everyday operations.
  5. Incident response: In the event of a security incident, we promptly investigate causes, mitigate impact, and take corrective action.
  6. Customer trust: Through these measures, we deliver services that customers can use safely and with confidence.

Certification Information

Standard
ISO/IEC 27001:2022 / JIS Q 27001:2023
Registration No.
IS 776195
Scope
Operation and management of the Company's services, including cashari

For the official Japanese version (controlling): 情報セキュリティ方針