Riviera Co., Ltd. and its domestic group companies (hereinafter referred to as "our group"), as operators of resort facilities and real estate management, including marinas, hotels, restaurants, cafes, event venues, wedding venues, tennis courts, and resort condominiums, recognize the importance of appropriately handling information assets used in the course of business. In addition to gaining the trust of all customers, we have established the following basic information security policy and will implement safe and appropriate information security measures.

1
The Company has established this policy and the subordinate provisions of this policy, and all employees shall comply with these policies when conducting business.
2

We comply with information security laws and regulations, national guidelines and other standards.

3

The Company shall take appropriate human, organizational, physical and technical measures regarding information security and ensure the safe and appropriate management and operation of information assets.

4

The Company will provide all employees with the necessary education to ensure the safe and appropriate management and operation of information assets.

5

The Company regularly evaluates and reviews its management system and rules to ensure the safe and proper management and operation of information assets, and makes continuous improvements.

6

We evaluate security risks of information assets based on appropriate risk assessment, and promote effective security measures by considering the results.

7

We regularly conduct internal audits to protect information security.

Enactment date 2019 October 1st
Last revised on April 2025st, 1
Riviera Group
Akio Kobayashi