Information Security Policy
Established: March 21, 2025 | Revised: March 11, 2026
Byron Inc. ("the Company") is committed to protecting all information assets, including those entrusted to us by our clients, from threats such as accidents, disasters, and crimes. We implement the following information security measures to maintain the trust of our clients and society.
1. Definition of Information Security
Information security is defined as maintaining the confidentiality, integrity, and availability of information. The Company implements appropriate information security measures while maintaining a balance of these three elements.
2. Management Structure
The Company establishes a management structure for maintaining and improving information security, with the Representative Director serving as the Chief Information Security Officer.
3. Compliance with Laws and Regulations
The Company complies with laws, regulations, contractual obligations, and other social norms related to information security.
4. Protection of Information Assets
The Company conducts risk assessments on information assets and implements appropriate security measures. We strictly manage information assets entrusted to us by clients, including confidential information, personal information, and source code.
5. Technical Measures
The Company implements technical security measures against threats such as unauthorized access, malware, and information leaks. We properly manage encryption of communications, access control, and vulnerability management.
6. Education and Training
The Company continuously conducts information security education and awareness activities for all employees to improve security awareness.
7. Incident Response
In the event of an information security incident, the Company will respond promptly, working to prevent the spread of damage and recurrence.
8. Continuous Improvement
The Company regularly reviews its information security initiatives and makes continuous improvements.

SECURITY ACTION Self-Declaration
Byron Inc. endorses the "SECURITY ACTION" initiative promoted by the Information-technology Promotion Agency, Japan (IPA), and declares the following commitments.
1. Management Responsibility
The Company implements organizational and continuous improvements to information security under management leadership.
2. Internal Structure
The Company establishes an organizational structure for maintaining and improving information security, and defines information security measures as official internal rules.
3. Employee Commitment
Employees acquire the knowledge and skills necessary for information security, ensuring solid commitment to security practices.
4. Compliance with Laws and Contracts
The Company complies with laws, regulations, standards, and contractual obligations related to information security, while meeting client expectations.
5. Incident Response
The Company responds appropriately to any legal violations, contract breaches, or incidents related to information security, and works to prevent recurrence.
Byron Inc. Representative Director: Ryotaro Hyodo