. the operating procedures that meet the internationally-accepted information security standards; 3. measures on IT security, access control, and information disclosure; 4. audit of the cloud provider’s
capital market products, investment management, management of the intermediary ’s branch office, supervising account of clients and making investment decisions for clients , operational function, compliance
control or monitor a service providing strictly in order to assure that satisfied the prescribed scope, such as providing the company officer control strictly the service provider’s operation in case of
evaluation of the outsourcee , review of the outsourcee ’s qualifications, and provision associated with the use of services to ensure mitigation of risks from the outsourcee ’s access to the organization’s IT
function under Clause 8 to the following third party without submitting an application for obtaining the approval under Clause 12: (1) a financial institution, or the intermediary ’s affiliated company whose