|
February, 2005(No.10)
|
![]() |
|
Taking a clear stand
|
||
During the Warring States period, some
400 years ago, each feudal lord had his Today it has become common in Japan,
as it is in the rest of the world, for |
|
Information security elevates corporate reliability
|
|
−Management systems that leads to complete information security−
|
JMA established the Quality Assurance
Registration Center (JMAQA) in 1994,
and it has since helped to promote the ISO
thorough offering certification and
registration services. To date, JMAQA has
certified 2,000 applications for ISO 9001
and 500 applications for ISO 14001. Also
on the rise are Information Security
Management System (ISMS) certifications
as companies and organizations prepare
for the Personal Information Protection
Act, which will come into force in April
2005. In this article, I'll present some of
the key concepts on how to cope with
information security measures.Personal information leaks are making headlines and causing serious losses to the companies. As insiders are believed to be responsible for 70 to 80% of all occurrences, it is urgent that companies bolster their general management systems and establish specific information management systems as a part of their overall information security. |
| P Mark or ISMS? |
One of the most frequent questions now is,"Which should we focus, Privacy Mark or
ISMS certification?" There is great interest
toward both Privacy Mark (P Mark) and
ISMS certification as companies battle
information leaks and seek to comply with
the Personal Information Protection Act.
Both certifications call for management
system that integrates information security
measures, and both require companies to
undergo evaluations that certify they meet
set standards.
|
| P Mark and OECD's Eight Principles |
The P Mark system was inaugurated in
1998, and here again the JIPDEC is the
lead supervisory organization. About
1,000 companies have been certified to
date, and there exist four organizations that
are authorized to assess and register
applications. The Japan Information
Technology Services Industry Association
is among them.
This guideline, also called the OECD's
Eight Principles, has become the
international standard that affects personal
information protection policies in most
countries. The second was the 1995 EU
Data Protection Directive, which integrates
the OECD's Eight Principles. This
directive stipulated that EU member
nations must establish applicable laws and
ordinances within three years. In addition,
the EU member nations are not allowed to
|
| Three points for building an information security management system |
To the first question, as to which
certification should we pursue, I'll ask
them back, "What's the purpose of the
|
|
CSR Board of Japan inaugural meeting held September 27
|
|
−Defining the ideal form of "Japanese" CSR Management−
|
Japan Management Association (JMA,
Chairman: Yoshio Tomisaka) convened
the first meeting of the CSR Board of
Japan on September 27, 2004 at the Tokyo
Prince Hotel in Shibakoen, Tokyo.
|
JMA GROUP |
Japan Management Association(JMA) Japan Institute of Plant Maintenance (JIPM) Japan Institute of Information Technology(JIIT) Japan Society for Technical Communication(JSTC) JMA Consultants Inc.(JMAC) JMA Systems Corporation(JMAS) JMA Research Institute Inc.(JMAR) JMA Management Center Inc. (Abbreviation: JMAM) |
|
Japan Management Association
3-1-22 Shiba Koen, Minato-ku, Tokyo 1058522 Tel.+81-3-3434-1601 Fax.+81-3-3434-1087 URL : http://www.jma.or.jp/indexeng.htm London Office 109 Parkshot House,5 Kew Road Richmond, Surry, TW9 2PR United Kingdom Tel. +44-20-8334-8923 Fax. +44-20-8334-8145 |