Home/About/Business Continuity Policy

Business Continuity PolicyOur foundational stance on business continuity and how we prepare for it.

BCP · Business Continuity Policy

This policy summarizes our foundational stance on events that could affect business continuity — earthquakes, infectious diseases, cyberattacks, and the like — together with how we prepare for them. Placing the safety of our employees and stakeholders first, we aim to keep the impact on our clients’ services to a minimum and to recover and continue operations early.

Ref
関連

This policy is an individual policy established under Section 8 (Business Continuity) of the CSR Policy. Please refer to both together.
Read the CSR Policy

01

Purpose

This policy exists so that, when a large-scale disaster, an infectious disease, an accident, a cyberattack, or any other unforeseen event occurs, we first secure the safety of our employees and stakeholders, then keep the impact on the services we provide to clients (contract development, quasi-mandate, operations and maintenance, and the like) to a minimum, and recover and continue our business at the earliest opportunity.

02

Principles & structure

Response principles
Securing life and safety; compliance with laws and contracts; maintaining information security; early notification to clients; and priority recovery of critical operations.
Scope
All officers and employees of the Company, the Osaka headquarters, and the overseas development center. For partner companies, we share the intent of this policy according to the contract and the nature of the work.
Activation & leadership
The CEO or the Deputy CEO decides to activate this plan, and the whole company acts on the response.
03

Risks we anticipate

R-01
Large-scale natural disasters

Earthquakes, tsunamis, floods, typhoons, and the like, together with the power outages, water outages, and transport disruptions that accompany them.

R-02
Accidents

Loss of use of the office or work environment due to fire, equipment failure, and the like.

R-03
Infectious diseases

Restrictions on commuting, movement, and travel caused by a widespread outbreak of an infectious disease.

R-04
Cyberattacks

Information-security threats such as unauthorized access, malware, and information leakage.

R-05
Infrastructure & external-service outages

Suspension or degraded performance of communications, power, cloud, and external services.

R-06
Social & supply disruptions

Shortages of critical personnel, supply constraints from partner companies and external services, and the like.

04

The structure that supports continuity

By maintaining, in normal times, an operating structure that does not depend on any particular place or individual, we are prepared to continue our business even in unforeseen situations.

01
Cloud infrastructure

We manage business data, documents, and communication on cloud services, maintaining an operating structure that does not depend on any single office.

02
Remote-work capability

Every employee has an environment in which remote work is possible, so we maintain the ability to continue operations even when coming into the office is restricted.

03
Geographic distribution

We make use of a two-location structure — the Osaka headquarters and the overseas development center — anticipating alternatives should continuity become difficult in one region.

04
Data protection

We manage business data appropriately within approved environments, in accordance with our contracts and our clients’ requirements.

05
Emergency communications

Through multiple means of contact, we maintain the ability to reliably reach our employees and key stakeholders.

05

From activation
to recovery

When an unforeseen event occurs, we make securing safety our highest priority and then work to continue critical operations and recover early, following the flow below.

01Phase
Activation decision: In an event that significantly affects business continuity, the CEO or the Deputy CEO decides to activate this plan.
02Phase
Securing safety & assessing the situation: We secure the safety of our employees and stakeholders and grasp the damage and its impact on operations.
03Phase
Notifying stakeholders: We promptly share the situation and our response approach with the clients and partners likely to be affected.
04Phase
Continuing on an alternative footing: Through remote work and the transfer of work between locations and personnel, we keep critical operations running.
05Phase
Phased recovery: After confirming the safety of our services, information security, and the integrity of data, we resume operations in stages.

As for recovery targets, where a contract or project plan sets terms, those terms take precedence; where none are set, we coordinate with the client based on the degree of impact and the available alternatives.

06

Cybersecurity
preparedness

In preparation for cyberattacks and information leakage, we maintain an incident-response structure. Should an incident occur, we work to prevent the spread of damage and to grasp its scope, and where it concerns a client’s operations, we report promptly in accordance with our contracts and applicable law. In recovering, we confirm safety and work on preventing recurrence.

07

Education, training & review

We make this policy known to all employees and conduct training and confirmation on emergency response roughly once a year. We also review this policy roughly once a year in response to changes in our business, structure, contracts, laws, and the results of our training.

Detail
詳細

A more detailed Business Continuity Plan (BCP) is maintained as an internal document. At a client’s request, we provide it individually under a non-disclosure agreement (NDA).
Contact us

Issued July 9, 2026
Intelligent TechSol Japan Ltd
Asiri Madaranga Karunathilaka, President & Representative Director