Information Security

Information Security Policy

Recognizing that the information assets handled during its business activities are a critical foundation of its management, the Company believes it has a social responsibility to protect such assets from risks such as leakage, damage, or loss and to manage them appropriately. To this end, the Company has established this Information Security Policy and will implement and maintain it.


  1. The Company will comply with this Information Security Policy and with all applicable laws, regulations, and rules related to information security.
  2. The Company will identify its information assets, including personal information and confidential information, and will implement appropriate measures to ensure their confidentiality, availability, and integrity.
  3. The Company will establish an appropriate information security management framework and clearly define responsibilities and roles. The Company also will provide regular training to officers and employees to ensure awareness of the importance of information security.

Personal Information Management Framework

  • All communications and data are encrypted.
  • System and access logs are retained indefinitely.
  • Access to personal information is limited to designated routes.
  • System access is restricted to designated connection routes.


The Company uses cloud infrastructure that meets high security standards to protect customers’ important information and has established and strengthened a customer information management framework based on a defense-in-depth approach.


The Company enforces the principle of least privilege, encrypted communications, and the preservation of audit logs, and continuously improves day-to-day operations through ongoing system monitoring and internal audits.

Secure System Operations

Business systems are operated on cloud infrastructure designed with availability, scalability, and security in mind.


To reduce risk, network access is restricted to secure connection routes, and access to data is controlled through appropriate role-based permissions.

Data is encrypted both at rest and in transit, and encryption keys are managed appropriately.

Business Device Management

Company-issued smartphones and PCs are managed under an integrated endpoint management framework, with full-disk encryption, enhanced authentication, and remote protection measures in place. A secure working environment is maintained through the continuous application of the latest security patches and the proactive detection of suspicious activity.

Internal and External Communication

Business chat tools are used for day-to-day work communications to improve operational flexibility. When coordinating with external customers and partners, communication practices are designed to balance convenience with security.

Personal Data Protection

Certified under the PrivacyMark system, personal information is handled in accordance with applicable laws and internal rules, including limiting purposes of use, applying the principle of least privilege, and preserving audit trails.


The data protection framework is continuously improved through education, training, and internal audits.

In addition, procedures for detection, containment, and recovery have been established in preparation for potential incidents, and regular drills are conducted.


privacy_10690094.png

image

私たちは、個人情報の適切な取り扱いを行う事業所にのみ許可される「プライバシーマーク」の付与認定を受けています。

情報セキュリティマネジメントシステム 「ISMS(Information Security Management System)」認証取得

当社は、2019年11月1日付で、経営企画部 システム課において情報セキュリティマネジメントシステムの国際規格である ISO/IEC27001:2013 及びその国内規格である JIS Q 27001:2014 の認証を取得しました。私たちは情報セキュリティの継続的な改善により情報管理体制を常時確保するとともに、より一層お客さまに安心してサービスをご利用いただけるように努めてまいります。

【認証登録概要】

認証組織   株式会社FPパートナー 経営企画部 システム課

認証規格   ISO/IEC27001:2013, JIS Q 27001:2014

認証番号   IS 714314

認証取得日  2019年11月1日

認定スキーム  ISMS-AC (Japan) Accredited;ANAB (United States)Accredited

認証範囲   保険代理店業務に関わるシステム開発、保守及び運用

ビジネスチャット LINEWORKSの導入

お客さまの利便性向上を図るため、幅広い世代で活用されているLINEと連携可能なLINEWORKSを導入いたしました。 また、社員間での連絡手段としてもLINEWORKSを活用し、業務効率化や社内コミュニケーションの活性化を目指しております。

iPhoneの無償貸与

営業端末として営業社員へiPhoneを無償貸与し、iPhoneとタブレットPCで一元管理を実現しています。

自社システム

自社システムは全てAWS(アマゾンウェブサービス)上で運用しています。