Sustainability | GovernanceBasic Policy on Information Security
Basic Policy on Information Security
General Direction
This Policy shall apply to the TDK Group.
The TDK Group shall maintain and enhance information security, recognizing that the continuity of business operations, the accuracy and fairness of financial information, and the proper management of personal information and trade secrets (including information provided by customers) are essential in striving to become a highly reliable company that further enhances stakeholder satisfaction.
We shall implement the following seven actions as concrete guidelines.
Action Guidelines
-
Observance of Laws and Regulations
In the handling of information, we shall comply with the laws and regulations of each country and region concerning the prevention of alteration, leakage, unauthorized access, and improper use of information; requirements for ensuring the reliability of information and the accuracy of disclosure; the protection of personal information; and business requirements, including contractual obligations with customers. -
Information Security Management System
We shall establish a system to manage and operate information security in an organized and systematic manner, and clearly define roles and responsibilities. -
Implementation of Measures for Risk Management
We shall identify threats and vulnerabilities to information assets from the perspectives of confidentiality, integrity, and availability, and implement appropriate measures in accordance with the associated risks. In addition, we shall develop internal regulations based on this Policy and ensure that information security measures are properly implemented. -
Provision of Resources
Management shall provide the necessary resources required to implement this Policy. -
Continuous Improvement of Information Security
We shall endeavor to continuously improve information security by responding to changes in risks arising from internal and external environmental changes. -
Strict Actions
In the event of any violation of this Policy or related internal regulations, management shall take strict and appropriate action in accordance with the TDK Group Code of Conduct and the Work Rules, reflecting a zero-tolerance stance toward violations. -
Incident Response and Accident Handling
In the event of an information security incident or accident, we shall take appropriate action and work to prevent a recurrence.
Established July 1, 2005
Revised on April 1, 2026
Noboru Saito
President & CEO
TDK Corporation
