Integrity management and other implementation situations

2023 Integrity management implementation situation

  The company’s board of directors has formulated the “Code of Integrity Business”, “Code of Ethical Conduct”, and “Internal Material Information Handling Procedures” to standardize the preventive measures for business activities with dishonest risks and encourage internal and external personnel to report dishonesty or improper behavior , in order to implement honest management, and its implementation status is reported to the board of directors regularly every year.
  The company’s “Integrity Business Code”, which prohibits the standards of dishonesty, is prohibited from the dishonesty behavior. Receive any unfair interests, or make dishonest behaviors such as violations of integrity, illegal or violation of obligations of trustees in order to obtain or maintain benefits. Its interests refer to anything valuable, including money, gifts, commissions, jobs, positions, services, preferential treatment, rebates, etc.
  The company’s “work rules”, clearing that employees shall not use the relationship between their positions or accept the improper gifts, gifts, invitations or donations of others in their jobs. Through the establishment of principles and systems The possibility of reducing risks.
  In order to ensure the practice of integrity operations, in addition to the regular auditing laws, the internal system is followed through the audit room, and the appeal pipeline is provided for internal and external stakeholders, and it will quickly respond to improve the lack of operations, ensure the quality of service, establish a company to establish a company Good interaction with interests.
The company’s finance and accounting department is responsible for promoting the company’s integrity management goals. In 2023, the new directors and managers have completed signing statements such as declarations of non-violation of the principles of integrity and other related statements. The signing rate reached 100%. The implementation of 2023 integrity management has been Report to the board of directors on November 10 2023, the contents are as follows:
一、Integrity operation (including prevention of inside transactions, etc.), publicity: A total of 4 publicity sessions were conducted for all directors and insiders.
二、Violation of integrity operations: Report 0 pieces and discover 0 items.
三、Protection and interests of stakeholders:
  (1)Qualified supplier audit: Apply for 1 supplier evaluation.
  (2)Communication of shareholders/investors: Holding one shareholder meeting and 7 boards.
  (3)Equipment avoidance: A total of 6 cases have been avoided in the interests of the board of directors.

2023 Information security implementation status

  The company completed the formulation of the “Information Security Policy and Management Plan” in 2023, which has been disclosed in the important regulations on the company’s official website. Its purpose is to protect the security of the company’s information equipment, systems and network communications, and effectively reduce the risk of human errors and external threats. Threats or natural disasters may lead to unauthorized access, use, control, leakage, destruction, tampering, destruction or other infringement of information assets. Strengthen information security management to ensure the confidentiality, integrity and Availability to maintain an operating environment where the company’s continued operations are free from information security hazards and free from internal and external intentional or accidental threats.
  The establishment and promotion of the information security system is divided into responsibilities among three people in the management department. Crisis prevention measures and management are adopted in response to external threats, authority management, access control, system availability, etc.; at the same time, NewSoft International Technology Co., Ltd. is appointed The company regularly assists in the implementation of information security assessments. Projects include: computer system testing, computer maintenance and system reorganization, server maintenance, firewall management, network problem maintenance, anti-virus processing, data backup management and settings, etc. to avoid company information security occurrence of risks.
  In order to establish the information security concept of company colleagues and avoid being attacked by hackers, phishing, piracy, copyright infringement issues and malware, teaching materials are formulated to conduct regular information security propaganda and employee security education training for all employees every year. The audit office discusses risks Information security inspections are regularly audited every year, and announcements and promotions are made by email from time to time. In order to implement the information security environment and technical regulations, in line with the belief that everyone is responsible for information security, the company requires all employees to comply with various information security regulations. Regarding policies, procedures and operations, this year’s safety promotion training for all employees was completed on August 31 and December 15, 2023 respectively.