Activity

1. ASP-SaaS-Cloud Promotion Council

ASP-SaaS-Cloud Promotion Council works to expand the ASP, SaaS market in collaboration with the Market Expansion Study Group. In particular, we will consider issues and problems for dissemination to specific fields and industries, and make countermeasures and recommendations.

a. Achievements of ASP-SaaS-Cloud Promotion Council

2021

Committee for the Promotion of Proper Settings in Cloud Service Provision and Use

Survey on measures to prevent and mitigate configuration errors in cloud service provision and use, analysis of necessary actions for promoting proper settings in cloud service provision and use, and development of guidelines for appropriate settings in cloud service provision and use (draft).

2020

AI Cloud Services Examination Committee

Consideration of challenges and measures when adding AI functions to Cloud Services (SaaS). Organization of risks and measures in providing AI cloud services. Development of guidelines and examination of draft information disclosure guidelines useful for cloud service providers.

Committee for the Development of Draft Information Security Guidelines in Cloud Service Provision

Conduct a survey aimed at revising the Cloud Security Guidelines, including a survey of international standards related to cloud services and their comparison with these guidelines, as well as a survey of various systems (ISMAP) related to cloud services and their comparison with the guidelines, leading to the creation of the third edition draft of the Information Security Guidelines.

2018

Committee for IoT Security Measures and Information Disclosure for Cloud Service Providers

In 2014, the Ministry of Internal Affairs and Communications published the 'Information Security Measures Guidelines for Cloud Service Provision', to which guidelines were added concerning the roles and responsibilities of stakeholders in IoT services, along with the formulation of information disclosure guidelines related to IoT.

Committee for the Study of Safety Management for ASP, SaaS, and Cloud Service Providers Handling Medical Information

In 2010, the Ministry of Internal Affairs and Communications published the 'Guidelines for Safety Management by ASP & SaaS Providers Handling Medical Information,' and a revised edition was formulated reflecting the Ministry of Health, Labour and Welfare's Medical Information Guidelines (5th Edition) and revisions to the Personal Information Protection Law.

2017

Information Disclosure Guidelines Advanced Reference Guide Examination Committee

Formulated the 'Information Disclosure Guidelines Reference Guide for Cloud Service Users,' which explains the intent, usage methods, and purposes of disclosure for cloud services information disclosure guidelines to users, including the handling of sensitive medical information and specific personal information.

2016

Information Disclosure Guidelines Advanced Examination Committee

Establishment and review of new information disclosure guidelines for 'Services Handling Medical Information' and 'Services Handling Specific Personal Information', and revision of existing information disclosure guidelines, leading to the formulation of the 'Cloud Service Information Disclosure Guidelines (Revised Draft)'.

2015

Expert Panel on the Use and Popularization of Cloud Services in the School Affairs Domain

Creation of a 'Handbook' showing how cloud service providers interpret the 'Guidelines for ASP & SaaS Providers in the School Affairs Domain' issued by the Ministry of Internal Affairs and Communications in 2010.

2014

The Committee for the Examination of Public and Secondary Use of Social Capital Data

Create a guide on the necessary items and considerations for the disclosure and secondary use of information on bridges and other structures based on pilot projects.

The Committee for the Examination of Public and Secondary Use of Disaster Prevention and Disaster Information

Create a guide necessary for expanding the disclosure and secondary use of information during the recovery and reconstruction period to include lifeline private companies.

2013

The Committee for the Examination of Public and Secondary Use of Geospatial Information

Create a guide on the necessary items and considerations for the disclosure and secondary use of geospatial information.

The Committee for the Examination of Public and Secondary Use of Fresh Agricultural Produce Information

Create a guide on the necessary items and considerations for providing and secondary use of fresh agricultural produce information.

The Committee for the Examination of Public and Secondary Use of Fisheries Information

Create a guide on the necessary items and considerations for providing and secondary use of fisheries information.

The Committee for the Examination of Public and Secondary Use of Disaster Prevention and Disaster Information

Create a guide on the necessary items and considerations for the disclosure and secondary use of disaster prevention and disaster information.

2012

The Committee for the Examination of Data Governance Guidelines in the Field of Social Capital

Create a data governance guide for the accumulation and management (primary use) and secondary use of data in the field of social capital.

The Committee for the Examination of Secondary Use of Geotechnical Information

Create a guide to promote the secondary use of geotechnical information owned by the public sector.

Food Distribution Information Service Development Committee

Create a guide related to the reference model to support compliance with rice traceability and efforts to meet obligations.

Committee for the Promotion of Collaboration Among ASP & SaaS Providers

Create a collaboration guide regarding considerations for ASP & SaaS providers working together to deliver services.

2011

Social Capital Information Service Development Committee

As the aging of social capital progresses, promote basic examinations focusing on effective strategies for utilizing ASP & SaaS as a means for efficient maintenance and management.

Food Distribution Information Service Development Committee

Organize the possibilities and challenges of implementing ASP & SaaS to facilitate the smooth operation of the 'Rice Traceability System', and compile matters that operators should be aware of.

Committee for the Examination of Rights Protection for Cloud Service Users

Develop user guidelines for the protection of cloud service users and compliance assurance, as well as guidelines for disclosing information related to the safety and reliability of cloud services.

2010

Educational Sector Service Development Committee

Organize issues related to the deployment of ASP & SaaS in the field of school administration, examine directions for their resolution, and based on these results, develop guidelines for operators.

Social Services Development Committe

Analyze and examine promising sectors related to social services where the ASP & SaaS model is expected to proliferate (for example, agriculture and water sectors) from a cross-sectoral perspective

Medical and Welfare Information Service Development Committee

Create SLA reference examples concerning specific agreed instances of matters (such as service levels and delineation of responsibilities) that operators should agree upon with medical institutions at the time of contracting.

2009

Safety and Reliability Committee

Develop guidelines for data center information disclosure and examine the ASP & SaaS certification system.

Social Services Development Committee

Deployment of the ASP & SaaS model in the social services sector and organization of related issues.

Medical and Welfare Information Service Development Committee

Develop guidelines for safety management and information disclosure for ASP & SaaS providers handling medical information.

2008

Safety and Reliability Committee

Consider developing safety and reliability guidelines for ASP services and operators, and introducing a certification system for operators.

ASP Collaboration Committee

Examine the disclosure of interfaces and clarification of role divisions to promote mutual use of ASPs.

Corporate Directory Committee

Consider constructing a directory based on publicly available information about companies that utilize the network.

International Collaboration Committee

Consider strategies for collaboration with Asia and other foreign countries utilizing Japan's advanced expertise in ASP.

b. Guidelines, etc. that ASPIC has been working on

As an activity to promote the spread of ASP, SaaS, and cloud, we have been working on the creation of guidelines, etc. to appropriately spread and expand cloud services and promoting the disclosure and secondary use of information.

(1) Cloud Transition Related - Creating for both Operators and Users

①Common Sector (For operators):

  • Guidelines
    • Information Security Measures Guidelines for ASP & SaaS (2008)
    • Collaboration Guide among ASP & SaaS Operators (2012)
    • Information Security Measures Guidelines for Cloud Service Provision (2014)
    • Guide on How to Use Information Security Measures Guidelines for Cloud Service Provision (Published by ASPIC 2015)
    • 2nd Edition of Information Security Measures Guidelines for Cloud Service Provision (Revised 2018)
    • Policy on Handling Risks in IoT Services (Added as Section 4 in the 2nd Edition of the above Guidelines) (2018)
    • 3rd Edition of Information Security Measures Guidelines for Cloud Service Provision (Revised 2021)
    • Guidebook on Cloud Services Using AI (2022)
    • Guidelines for Appropriate Certification in the Use and Provision of Cloud Services (2022)
  • Information Disclosure Guidelines
    • Information Disclosure Guidelines on Safety and Reliability of ASP & SaaS (2007, Revised 2017, Revised 2022)
    • Information Disclosure Guidelines on Safety and Reliability of IaaS & PaaS (2011, Revised 2017)
    • Information Disclosure Guidelines on Safety and Reliability of ASP & SaaS (Specific Personal Information) (2017)
    • Information Disclosure Guidelines on Safety and Reliability of ASP & SaaS (Medical Information) (2017)
    • Information Disclosure Guidelines on Safety and Reliability of IoT Cloud Services (ASP & SaaS edition) (2018)
    • Information Disclosure Guidelines on Safety and Reliability of IoT Cloud Services (IaaS & PaaS edition) (2018)
    • Information Disclosure Guidelines on Safety and Reliability of Cloud Services Using AI (ASP & SaaS edition) (2022)

②Sector-Specific (For operators):

  • Safety Management Guidelines when Cloud Operators Handle Medical Information (2009, Revised 2018)
  • SLA Reference Examples Based on the Previous Guidelines (2010, Revised 2018)
  • Guidelines for ASP & SaaS Providers in the School Administration Sector (2010)
  • Handbook for "Guidelines for ASP & SaaS Providers in the School Administration Sector" for Cloud Service Providers (2016)
  • Data Governance Guide in the Social Capital Sector (2012)
  • Guide for Providing Rice and Rice Product Traceability Services via ASP, SaaS & Cloud (2012)

③For users:

  • Guidelines on Public IT Outsourcing (2003)
  • Guidelines for the Adoption and Use of ASP & SaaS by Local Public Organizations (2010)
  • Guide for Protecting Cloud Service Users and Ensuring Compliance (Published by ASPIC 2011)

④Data Centers (For operators):

  • Information Disclosure Guidelines Related to Safety and Reliability of Data Centers (2009, Revised 2011)
  • Data Center Usage Guide (Published by ASPIC 2010)
  • Data Center Operators Collaboration Guide (Published by ASPIC 2012)
(2) Disclosure and Secondary Use of Information Related:
  • Geotechnical Information (2012), Social Capital Information (2014)
  • Agricultural Product Information (Published by ASPIC 2013), Fishery Information (Published by ASPIC 2013)
  • Guide for the Promotion of Open Data and Secondary Use of Social Capital Information (2014)
  • Disaster and Disaster Information (Open Data) (Published by ASPIC 2013, Revised 2014)
  • Disaster and Disaster Information (Member) (Published by ASPIC 2014)

2. Society for Cloud computing

ASPIC promotes various societies to generate sound market and expand market every fields and business types.

Following figure shows placement of the society.

3. Member Support

ASPIC promotes expanding ASP / SaaS / Cloud business and member's business actively by various events as follows.

a. ASP, SaaS and Cloud Award

The purpose of this award is to enhance social cognition how the business model and the technology of ASP / SaaS / Cloud computing contributes to the social and gets customer satisfaction, and to improve awareness of ASP / SaaS vendors that get excellent results at ASP / SaaS / Cloud business.

b. Cloud Business Exchange Meeting

ASPIC holds Cloud Business Exchange Meeting for ASP / SaaS / Cloud vendors to provide a business matching chance. Vendors who have the possibility of cooperation each other exchange ideas to expand own business by alliance.

c. General Meeting, Seasonal Meeting

The meeting provides the latest information of policy, business case, etc. related with ASP / SaaS / Cloud computing.

d. Provision of Information

ASPIC distributes the sophisticated technical articles related ASP / SaaS / Cloud computing that are issued by various media to members.