Information Security and Privacy Management
The Company's risk management and assessment practices refer to the risk sources listed in the Handbook for Risk Management and Crisis Handling (issued by the central government). Risk identification is conducted based on the Company's business plans, corrective actions and impeachment cases from the Control Yuan, recommendations from the Taipei City Audit Division of the National Audit Office, and public opinion feedback. In terms of information security, regular identification of potential threats and vulnerabilities is conducted, and appropriate protective measures are implemented. In addition, based on the results of risk identification and qualitative analysis, if an information security incident occurs due to failure to effectively implement information security management, and it causes damage to the Company's reputation or system security, it will be assessed as a moderate risk.

Information Security Protection and Management Measures



![Taiwan.gov.tw [ open a new window]](/images/egov.png)
