The T&D Insurance Group recognizes information assets entrusted to us by our customers, business partners, shareholders, and society as one of our most important management resources. We believe that ensuring the confidentiality, integrity, and availability of these information assets is essential to the sustainable enhancement of corporate value. Accordingly, this Policy is established to ensure that such information assets are appropriately managed and protected against various risks, including cyberattacks, information leakage, unauthorized alteration, accidents and system failures, as well as natural disasters and fires.
1. Governance and Accountability
The Group recognizes information security as a critical management issue. Under the involvement and oversight of senior management, we continuously manage and supervise our information security policies, framework, and initiatives.
2. Risk-Based Information Security Management
We regularly identify and assess risks related to information assets and implement technical, organizational, and human measures appropriate to the significance of those risks. We also continuously review and improve our measures in response to emerging threats and changes in the business environment.
3. Incident Response and Business Continuity
We strive to prevent information security incidents before they occur and maintain a framework that enables prompt reporting and appropriate response when incidents arise. In conjunction with our business continuity planning, we promote initiatives to minimize the impact on business operations.
4. Human Resource Development and Awareness Enhancement
We continuously provide information security education and awareness programs for directors, officers, employees, and other parties involved in the Group’s operations, with the aim of enhancing their awareness and response capabilities.
5. Compliance with Laws, Regulations, and Agreements
We comply with applicable laws, regulations, guidelines, internal policies, and contractual obligations related to information security.
6. Third-Party Management
We share the importance of information security with third parties involved in the Group’s operations, including those within our supply chain, and ensure appropriate management and oversight of such parties.
The Group is committed to continually improving the effectiveness of its information security management based on this Policy.
September 1, 2026
Established by the Board of Directors of T&D Holdings, Inc.
This Basic Policy defines the T&D Insurance Group’s fundamental approach to information security, with reference to the guidelines and directives published by the Financial Services Agency and other relevant authorities, as well as information security frameworks recognized both in Japan and internationally.






