Jump to the main content block

Security Policy

The Center for Clinical AI Impact Evaluation (hereinafter referred to as "the Center") aims to ensure that you can use the services and features provided on this website with confidence. To this end, the Center has established the following Information Security Policy:

 

◆ Scope of the Policy

The Information Security Policy is applicable to the collection, utilization, and protection of personal data when you are browsing the Center's website; however, it is not applicable to the other websites that are linked therefrom. When one follows links to other websites, the Information security policies of that website apply.

 

◆ Collection and Utilization of Personal Information

  • In accordance with the Personal Information Protection Act and related regulations, information will not be arbitrarily released to third parties.
  • When using the website, the website will automatically collect the following information: date and time, the Web pages you have selected, your URL, your Web browser, your actions on the website (such as downloads) and whether or not they were successful.
  • Monitor behavior that causes a major load on the website.

 

◆ Information Access Control

  • Set system access policies and authorization regulations and inform staff and users of their relevant authorities and responsibilities in writing, electronic or other measures.
  • Deal with personnel who take leave, retire, or are suspended in accordance with the established procedure for such cases and immediately withdraw their access rights to the various system resources.
  • Establish a management system of user registration to enhance the management of user access password.
  • Establish an information security audit system to conduct information security audits regularly or irregularly.

 

◆ Information security and protection

  • Establish a procedure to handle information security events and assign relevant personnel with the responsibility to deal rapidly and effectively with information security events.
  • Establish a change management reporting mechanism for information infrastructure and systems to avoid security leaks.
  • Set up a system backup facility to perform regular backups of necessary information and software to ensure speedy recovery of normal operation during breakdowns or storage media failures.

 

◆ Network security management

  • Install a firewall to control transfer of internal network data and access from outside networks and establish a rigorous identification procedure.
  • Do not store confidential and sensitive data and files in a system open to the outside world.
  • Conduct regular internal network data security and virus checks, and update virus definitions and other security measures.

 

◆ User Self-protection Measure

  • Please do not disclose your password or other personal information to others.
  • If you share a computer with another person or are using a public computer, remember to log out and close your browser after each session to prevent others from accessing your account.

 

◆ Revisions to Information Security Policy

The Center's information security policy will be amended from time to time when demand arises. The revised terms will be published on the Center's website successively.

 

Login Success