Ichikawa Co., Ltd. (the “Company”) hereby declares that in order to ensure, as an organization, the proper handling of personal data in compliance with the “Act on the Protection of Personal Information” (the “Personal Information Protection Act”), it recognizes the protection of personal data obtained from its business partners, employees, and other parties involved as an important matter and establishes the “Basic Policy on the Proper Handling of Personal Data” as described below, while ensuring that the Policy is clearly communicated to, and thoroughly understood by, its representatives, employees, and other workers.
Name and Address of the Business Operator and Name of Its Representative
Takanobu Yazaki
President
Ichikawa Co., Ltd
2-14-15, Hongo, Bunkyo-ku, Tokyo, 113-8842 Japan
Compliance with Applicable Laws, Regulations, Guidelines, etc.
All employees and workers of the Company shall understand the importance of protecting personal information and handle such information properly in compliance with the Personal Information Protection Act and other laws and regulations, as well as the guidelines of the Personal Information Protection Commission and other authorities.
Acquisition and Use of Personal Information
When acquiring personal information, the Company will publicly announce or notify the purpose of use (including public announcement through this Policy). If personal information is acquired directly from the person in a contract or other documents (including electromagnetic records), the Company will clearly state the purpose of use in advance and ensure that the information is acquired through legitimate and fair means. The Company will use personal information properly within the scope necessary to achieve the purpose of use.
Purpose of Use
The Company will use personal information for the purposes listed below.
- Personal information concerning the Company’s business partners (or their officers and employees in the case of corporate business partners)
- To make necessary business contacts, perform a contract, conduct business negotiations, etc.
- To manage business partner information
- Personal information concerning shareholders (or their officers and employees in the case of corporate shareholders)
- To exercise rights and perform obligations under the Companies Act
- To manage shareholders, such as preparing records, in accordance with applicable laws and regulations
- Personal information concerning applicants who responded to hiring or recruitment activities
- To contact and provide information to applicants who responded to hiring or recruitment activities and to use the information for other purposes related to hiring and recruitment activities
- Personal information concerning employees
- To send a business communication to employees
- To pay remuneration (wages, bonuses, allowances, etc.) to employees, to perform personnel and labor management, and to provide benefits
- To undertake health management for employees
Sharing of Personal Information
The Company will share the personal information of its business partners and employees in a manner mentioned below.
- Items of Personal Information
Address, name, postal code, telephone number, fax number, email address, etc. of business partners and employees
- Scope of parties to share personal information
Subsidiaries of the Company and its Group companies and the Company's labor union
- The Company will share personal information within the scope of the purposes of use described in "Purpose of Use" 1. and 4. above.
- The Company assumes responsibility for the personal data to be shared, such as name, address, representative, etc. of the company responsible for the management of personal data.
For the address and representative of the Company, please see "Name and Address of the Business Operator and Name of Its Representative" above.
For inquiries about the sharing of personal data, please see "Inquiry Contacts" below.
Provision of Personal Information to Third Parties
The Company will not provide personal information collected to any third party, except in any of the following cases:
- In cases where prior consent has been obtained from the customer;
- In cases where the handling of personal information is outsourced to a third party within the scope necessary to achieve the purpose of use;
- In cases where the provision of personal information is required by laws and regulations;
- In cases where there is a need to protect the life, wellbeing, or property of an individual and it is difficult to obtain the consent of the customer;
- In cases where there is a special need to improve public wellbeing or promote healthy child development and it is difficult to obtain the consent of the customer;
- In cases where it is necessary to cooperate with the national government or a local government, etc. in performing the functions prescribed by laws and regulations and obtaining the consent of the customer is likely to interfere with the performance of those functions; or
- In cases where the information is provided to those listed in the scope of the parties to share personal information as described in "Sharing of Personal Information" above.
Matters Concerning Security Control Measures
The Company will take necessary and appropriate measures for controlling the security of personal data, including those to prevent the leakage, loss, or damage thereof. The Company will also exercise the necessary and adequate supervision over its employees, workers, and entrusted parties (including sub-entrusted parties, etc.) who handle personal data. These measures for controlling the security of personal data are separately and explicitly stipulated in the “Personal Information Handling Rules,” which are outlined below.
- Establishment of the Basic Policy on the Proper Handling of Personal Data
To ensure the proper handling of personal data, the Company has established basic policies regarding compliance with relevant laws, regulations, guidelines, etc., points of contact for handling inquiries and complaints, and other related matters.
- Development of Rules on the Handling of Personal Data
The Company has developed manuals regarding how to handle personal data at each stage including acquisition, usage, retention, sharing, deletion, and disposal, detailing the handling procedures, accountable individuals, persons in charge, and their responsibilities.
- Organizational Security Control Measures
The Company has established a reporting system to notify the accountable individuals if any fact or sign of a violation of laws or the Handling Rules is detected, by assigning individuals accountable for the handling of personal data, clarifying the employees and workers in charge of handling personal data, and specifying the scope of personal data they are authorized to handle. The Company regularly reviews its handling of personal data through self-inspections and audits conducted by the Corporate Auditing Department.
- Human Security Control Measures
The Company regularly provides training to its employees and workers regarding matters to be kept in mind when handling personal data. Its Rules of Employment stipulate matters concerning the confidentiality of personal data.
- Physical Security Control Measures
The Company controls the entry and exit of employees and workers in areas where personal data is handled and restricts the types of equipment that can be brought into these areas. It also has implemented measures to prevent unauthorized persons from accessing personal data. Furthermore, the Company has implemented measures to prevent theft or loss of equipment, electronic media, and documents that contain personal data, as well as measures to ensure that personal data is not easily revealed during transportation of such equipment, electronic media, etc., even within the office.
- Technical Security Control Measures
The Company has implemented access control measures to limit the scope of persons in charge and the personal information databases they handle. It has also put a mechanism in place to protect information systems that handle personal data from unauthorized external access or illegal software.
- Understanding of External Environment
When handling personal information in foreign countries, the Company regularly collects and understands information on the country’s personal information protection systems before implementing security control measures. Provided below are the names of such foreign countries, an outline of their personal information protection systems, and the security control measures implemented by the Company.
- Names of the foreign countries
The United States
Germany
China
Thailand
- For an overview of the personal information protection systems, please refer to the Personal Information Protection Commission’s website.
https://www.ppc.go.jp/
- Matters Concerning Security Control Measures
The Company has implemented the measures described in items 2. through 7. above.
Requests for Disclosure or Other Handling of Personal Information
Upon receiving a request related to personal information, including reference, correction, suspension of use, and deletion, the Company will promptly respond to the request after confirming the identity of the individual in accordance with the prescribed procedures. If you have any questions regarding this Basic Policy or if you wish to exercise your rights, please contact the contact point in item "Inquiry Contacts" below.
Inquiry Contacts
If you have any questions or complaints regarding the Company's handling of personal data, please contact the following:
Ichikawa Co., Ltd.
2-14-15, Hongo, Bunkyo-ku, Tokyo 113-8842, Japan
Contact for the handling of personal information: General Affairs Department
TEL:03-3816-1111・FAX:03-3816-3940
Open hours: 9:00 a.m. to 5:00 p.m. (except Saturdays, Sundays, and holidays)