Information Security Policy
BaumInfotec LLC (hereinafter referred to as “the Company”) recognizes information entrusted to us by customers, business partners, research institutions, researchers, and other stakeholders in the course of our business activities, as well as information assets held by the Company, as important assets. We are committed to their appropriate management and protection.
To ensure information security, the Company operates in accordance with the following basic principles.
1. Appropriate Management of Information Assets
The Company appropriately manages the information assets it handles according to their importance and endeavors to prevent unauthorized access, leakage, loss, alteration, destruction, and other security incidents.
2. Compliance with Laws, Regulations, and Contracts
The Company complies with applicable laws and regulations concerning information security and personal information protection, as well as contractual and other applicable requirements.
3. Implementation of Information Security Measures
To appropriately protect information assets, the Company implements necessary technical and organizational security measures, including access control, authentication, and backup procedures.
4. Appropriate Use of External Services
When using cloud services or other external services, the Company reviews their security and terms of use and uses them appropriately according to the importance of the information being handled.
5. Response to Information Security Incidents
In the event of information leakage, unauthorized access, or another information security issue, the Company will promptly assess the situation, take necessary action, investigate the cause, and endeavor to prevent recurrence.
6. Continuous Review and Improvement
The Company continuously reviews and improves this Policy and its information security measures in response to changes in the business environment, information technology, and information security risks.
Established: November 1, 2026
BaumInfotec LLC
