Company Data
Risk Governance
- Develop a system to continuously monitor and supervise the implementation of risk management in each department in charge of risk management. In addition, the Company's Internal Control Committee will evaluate the effectiveness of the system and oversee and promote it from the group-wide perspective.
- The head of each department promotes the daily risk management within their own department.
- In addition to appointing an executive at the Company to supervise risk management from a company-wide perspective, an executive in charge of risk management shall be appointed at each Group company, thereby establishing a system for collaboration across the entire Group.
- The Internal Control Committee shall be set up in the Company, which shall periodically hold a meeting to enable smooth and effective functions of the internal control system of the Group.
- The internal audit function shall be set up in the Company and major group companies. The department shall verify independently from operation execution that the Group's business activities are performed in accordance with the laws, articles of incorporation, internal rules, and the management policy and plan of the Group, and maintain the soundness of the Group's business activities by providing specific advice and recommendations.
The important long-term emerging risks
AI Ethics
Potential business impact of the risk |
With the advent of deep learning, the capabilities of AI have improved, leading to its application in areas that require high reliability and are related to human life and management, such as autonomous driving, loan screening, and medical image diagnosis. However, this expansion has brought with it the risk of various issues that could potentially violate human rights. When these issues occur, they can lead to a rapid decline in corporate reputation due to decreased public acceptance. This can result in significant business continuity challenges, including service disruptions or business downsizing. Considering these issues, our company has been actively engaged in governance activities to regulate AI. We are committed to promoting the creation of value through the fair and sound use of AI, as well as fostering the sustainable development of society. |
---|---|
Mitigating actions |
In 2019, our company established the "NTT DATA Group's AI Guidelines," which serves as a reference for the development, operation, use, and decision-making related to AI. |
In 2021, we established the AI Advisory Board to incorporate external expertise and examine the ideal state of governance. Based on the findings, we have advanced the development and implementation of AI risk management. https://www.nttdata.com/global/ja/news/services_info/2021/012900/ |
|
In 2023, we established the AI Governance Office as an organization dedicated to effectively managing risks arising from the inappropriate use of AI and promoting the appropriate use of AI. Targeting both the AI systems provided by NTT DATA and our internal systems, we have developed rules and frameworks to detect business risks associated with AI. By addressing these risks in collaboration with project teams, we are promoting the creation of an environment in which society and our customers can fully benefit from the use of AI and achieve a sustainable society. |
|
Particularly in 2023, we established the "AI Risk Management Policy," which defines the AI risks that must be managed globally across the entire group and outlines the management framework. Given the rapid development of generative AI and the urgent need to establish AI governance, we are currently working on developing rules and processes based on this policy across the entire group. https://www.nttdata.com/global/en/insights/generative-ai/governance https://www.nttdata.com/jp/ja/services/data-and-intelligence/governance/ |
Risks associated with securing human resources
Potential business impact of the risk |
|
---|---|
Mitigating actions |
|
|
|
|
|
|
Security Experts
With information security threats getting more diverse and sophisticated, there are concerns about the shortage of human resources with the information security expertise required.
Against this backdrop, the NTT DATA Group develops security experts and improves their skills actively. As of April 2024,1022 experts, with the “Security Expert Qualification” offered internally by the NTT Group were active in Japan and overseas.
Job Classification | Level | ||
---|---|---|---|
Security management / Security consulting | Security Masters | 2 | First-rate experts with industry-leading track records and communication capabilities |
Security operation | Security principals | 9 | Specialists in proposing security strategies to managers |
Security development | Security professionals | 1013 | Specialists with exceptional experience and judgement |