

In this section, focal actions for Group ISMS and the status of implementation are explained. The Ricoh Group obtained unified certification in December 2004.
The three-year renewal audit came due in fiscal 2007, during which time Group companies in Japan and overseas were re-audited for ISMS conformity.
|

Group Companies in Japan with
ISMS Certification |
 |
 |
 |
In Japan, a total of 91 companies have obtained ISMS certification. This number includes all major Group companies such as Ricoh itself and companies engaged in sales, service, logistics and manufacturing across Japan. In the three-year period following the Group’s unified certification in 2004, ISMS became an international standard—ISO 27001. The Ricoh Group realigned to meet ISO 27001 requirements in fiscal 2007 and implemented the RICOH Family Group Information Security Measures (RFG ISMeasures). Having conformed to the revised standard, Group companies underwent a renewal audit. This was carried out separately for each company and each organizational unit from August to November 2007 across Japan.

Group Companies Overseas with
ISMS Certification |
 |
 |
 |
 |
ISMS certification logos |
| |
 |
Overseas, 20 companies were newly certified during fiscal 2007.
Highlights included the certification obtained for the first time by sales companies in North and Latin America including Ricoh Americas Corporation. This brought the total of companies certified for ISMS to 46, as of the end of fiscal 2007. The Ricoh Group will continue to shortlist organizations requiring certification by a third-party organization.

| Group companies outside Japan with ISMS certification (as of the end of FY 2007) |
 |
|
|



|