Protecting Customers' Personal Information

Goals and Specific Initiatives in the Fiscal Year ended March 31, 2016

In March 2016, JACCS updated its Privacy Mark certification for the fifth time. This certification recognizes businesses that maintain appropriate measures to safeguard personal information. By extensively following the Personal Information Protection Policy below, we will continue to enhance protection of customers' personal information, credit card numbers, and other information.

Privacy Mark 10660038

Achievement in the Fiscal Year ended March 31, 2016

  1. In the fiscal year ended March 31, 2016, to expand and enhance the content of personal data protection training programs attended by all JACCS employees, we produced an original e-learning program adapted to suit the needs of the Company's operations, and distributed the program materials. This personal data protection program was implemented vis-a-vis all employees of the Group. In addition, 137 JACCS employees passed the qualification test for Managers Handling Personal Information. This qualification is managed by the Japan Consumer Credit Association, which is an Authorized Personal Information Protection Organization recognized by Japanese government agencies. Currently, over 90% of JACCS employees have qualifications relating to personal information management. Furthermore, 79 JACCS employees passed the qualification test for Information Security (Managers and Elementary Level), which is run by the Japan Association for Information Learning. As a result, a total of 281 employees hold qualifications relating to information security.
  2. To boost personal information protection auditing in all departments, we improved auditing in accordance with changing risks and revisions of related laws and regulations, undertaking personal information protection auditing for all units.
  3. We distributed a personal information safety management questionnaire that we updated in line with revisions of related laws and regulations to all contractors for work entailing the use of personal information. At the same time, we visited major business contractors and subcontractors to confirm questionnaire findings and assess situations and conduct inspections.

Initiatives and Planned Improvements in the Fiscal Year ending March 31, 2017

The Company will continue to provide personal information protection education for all employees. At the same time, we will reinforce our Privacy Policy, safeguarding customers' personal information, credit card numbers, and other data more appropriately.

System Security

Goals and Specific Initiatives in the Fiscal Year ended March 31, 2016

We centrally manage customer information through JANET, our mission-critical system, ensuring advanced security.

To consistently maintain and improve system security, we obtained certification under ISO/IEC27001, an international standard for information security, established an information security management system.

As part of efforts to protect credit card information, we obtained compliance certification for an international standard on credit card information protection, the Payment Card Industry Data Security Standard (PCI DSS) Version 3.1, for our Web system and Web back office operations.

In the fiscal year ended March 31, 2016, we further reinforced customer information security.

Achievement in the Fiscal Year ended March 31, 2016

We have taken various steps to tighten information handling to bolster the security of customer information.

Initiatives and Planned Improvements in the Fiscal Year ending March 31, 2017

We will solidify system security by continuing with information security management system activities so we can enhance customer trust.

Scope of certification registration
The following computer system development, maintenance, and operational management:
  • Credit card financing operations' mission critical system (JANET host system)
  • System to deliver Internet services to customers, member stores, business partners and others in cooperation with mission-critical systems (Web system)
  • System to exchange I/O data with member stores, business partners and others in cooperation with mission-critical system (IPC system)
Registration, renewal, and revision dates
Registration: March 24, 2006 / Renewal: March 24, 2015 / Revision: March 18, 2016
Certification standards
ISO/IEC27001:2013 / JIS Q 27001:2014
JQA(CERTIFIED MANAGEMENT SYSTEM)JQA-IM0324

Mechanism for Reflecting Customer Feedback in Businesses

Goals and Specific Initiatives in the Fiscal Year ended March 31, 2016

To reflect customer feedback, requests and advice, JACCS consolidates such information in its database to ensure swift responses or investigations when improvements, amendments, or guidance is needed. We have consolidated customer opinions, requests, and responses, including from customer centers, for sharing purposes.

Achievement in the Fiscal Year ended March 31, 2016

We have continued companywide to improve and make amendments in response to customer requests. A key example of such efforts in the fiscal year ended March 31, 2016 was the addition of an inquiry function for the Intercom Club online member service for histories on acquisitions and redemptions of Lovely Points and for balances and deposit acquisitions histories.

Initiatives and Planned Improvements in the Fiscal Year ending March 31, 2016

In the fiscal year ending March 31, 2017, we will continue to improve and amend operations in response to customer feedback.