I. Purposes and Positioning
As this guideline only sets out items that are highly necessary based on a cross-sectional
overview of the CI sectors with a focus on information security measures, there is a need to pay
attention to the following two points when the respective CI sectors or business operators
formulate or revise Safety Principles.
Depending on the CI sector or CI operator, due to reasons such as the mode of business or
other factors, there is a possibility that the items prescribed in this guideline include items
that do not need to be set out in Safety Principles.
Depending on the CI sector or CI operator, due to reasons such as the mode of business or
other factors, there is a possibility that items not prescribed in this guideline need to be
set out in Safety Principles.
With regard to the items of the measures prescribed in this guideline and the standards for these
items, each CI sector or CI operator is expected to consider which Safety Principles they should
be prescribed in, taking into account factors such as the provisions of the relevant laws in each
CI sector and the composition of existing Safety Principles.
3