information security policy | fitipower integrated technology inc.-九游会登陆
1.1.1 vision of information security policy
to strengthen personnel awareness and prevent data leakage
to implement daily operations and ensure service availability
1.1.2 based on the vision of the information security policy, the following information security objectives are proposed :
(1) ensuring that all information operations of the company comply with relevant legal requirements.
(2) ensuring that all personnel understand their information security responsibilities, protect information assets,
and reduce the risk of information security incidents.
(3) ensuring the confidentiality of the company's information assets, implement data access controls,
and ensure that information can only be accessed by authorized personnel.
(4) ensuring the integrity and accuracy of information operations management in the company, and prevent unauthorized modifications.
(5) ensuring the continuous operation of information operations in the company and comply with operational service level requirements.
1.1.3 in response to the above information security objectives, annual to-do lists, required resources, responsible personnel, expected completion times,
and evaluation methods and results should be prepared. relevant monitoring and measurement procedures should follow the company's "supervision
and measurement management procedures."
1.1.4 the information security implementation team should report the results of effective measurement of information security objectives to the convener of
the information security committee during management review meetings.