Solliciter une démo
Contactez-nous
Zscaler Cloud Portal
Zscaler Cloud Portal One
Zscaler Cloud Portal Two
Zscaler Cloud Portal Three
Zscaler Cloud Portal Beta
admin.zscloud.net
Zscaler Private Access Cloud Portal One
Zscaler Private Access Cloud Portal Two
English
Français
Deutsch
Italiano
日本語
Castellano - Mexico
Castellano - España
Portugues - Brasil
Home

La plateforme unifiée de Zscaler

La plateforme unifiée de cybersécurité de Zscaler, fondée sur le Zero Trust Exchange. Une plateforme unique qui élimine votre surface d’attaque et évolue avec l’IA.

En savoir plus

Zero Trust SASE partout

Sécurisez les utilisateurs, les appareils, les workloads et les agents avec le seul SASE conçu pour le Zero Trust et l’IA.

En savoir plus
Accès sécurisé à Internet (ZIA)Protégez les utilisateurs lorsqu’ils naviguent sur Internet ou utilisent des applications SaaS.Accès privé sécurisé (ZPA)Connectez vos utilisateurs aux applications privées sans VPN.Zero Trust BranchConnectez les utilisateurs et les appareils sur vos sites distants, campus et usines.Zero Trust CloudFaites évoluer la sécurité de vos workloads, des pare-feu au Zero Trust.Expérience digitale (ZDX)Détectez et résolvez rapidement les problèmes liés aux applications, au réseau et aux appareils.Navigateur Zero TrustSécurisez la navigation et l’accès aux applications privées sur tous les appareils.Cloud SandboxProtégez-vous contre les menaces inconnues véhiculées par les fichiers.Zero Trust FirewallÉtendez l’inspection du trafic à tous les ports et protocoles.Zero Trust Gateway Gérez la sécurité sur tous les workloads.Continuité d’activitéMaintenir la sécurité et la disponibilité des services en cas de défaillance critique.Accès distant privilégiéAccès distant sécurisé, contrôlé et sans agent.Zscaler CellularSecure cellular devices and telecom infrastructure.

Solutions

Des cas d’usage aux secteurs d’activité, en passant par les partenaires technologiques, trouvez la combinaison de solutions adaptée à votre entreprise.

En savoir plus
Gestion des actifs d’IASécurité de l’IAGestion de la surface d’attaqueSécurité BYODGestion continue de l’exposition aux menacesSécurité des donnéesMicrosegmentationSegmentation OTRemplacer le VPNSecure Access to AISécuriser les clientsSécuriser le trafic interneSécuriser le trafic entrant et sortantSécuriser l’IoT/OTSecure the WorkforceGraphe contextuel de sécuritéZero Trust + IAZero Trust SD-WAN

Bibliothèque de ressources

Restez informé des dernières actualités en matière de cybersécurité : analyses, rapports, guides, webinaires et témoignages de clients.

En savoir plus

Nous sommes là pour vous aider.

Échangez avec nos experts, trouvez les réponses à vos questions et bénéficiez de l’aide dont vous avez besoin, qu’il s’agisse de consulter la documentation et les forums d’entraide ou de contacter directement notre support technique.

Obtenir de l’aide
Contacter l'assistanceContactez l’équipe de support technique de Zscaler 24 h/24 et 7 j/7, via un ticket ou par téléphone.Centre de réussite clientFormation, bonnes pratiques et ressources pour tirer pleinement parti de votre déploiement Zscaler.Release NotesThe latest product updates, new features, and bug fixes across all Zscaler services.Trust PortalNotifications en temps réel sur l’état de santé des services, la disponibilité et les opérations de maintenance planifiées.Zenith CommunityÉchangez avec plus de 374 000 utilisateurs, partenaires et experts Zscaler.Portail d'aide ZscalerDocumentation technique, guides de produits et conseils de dépannage.

À propos de Zscaler

Avec le plus grand cloud de sécurité au monde, Zscaler aide les plus grandes entreprises à garder une longueur d’avance sur les menaces et à simplifier leurs activités.

En savoir plus

Qui sommes-nous ?

Les personnes, les valeurs et la vision qui façonnent Zscaler, et tout ce que vous devez savoir sur notre société.

Reconnaissance des analystesDécouvrez pourquoi Gartner, Forrester et d’autres considèrent Zscaler comme un leader.CarrièresRejoignez une équipe qui œuvre à créer un monde où les entreprises peuvent exercer leurs activités en toute sécurité.ConformitéCertifications, autorisations et rapports d’audit relatifs à la plateforme Zscaler.Responsabilité d'entreprise Comment Zscaler génère un impact positif grâce à une gestion responsable.CultureDécouvrez notre façon de travailler, ce qui nous tient à cœur et ce qui nous motive.Foire aux questionsDes réponses rapides à vos questions sur Zscaler, ses activités et le fonctionnement de sa plateforme.Relations avec les investisseursRésultats financiers, dépôts auprès de la SEC et gouvernance d’entreprise de Zscaler (NASDAQ : ZS).Équipe de directionLes dirigeants et membres du conseil d’administration qui portent la vision et la stratégie de Zscaler.Zenith VenturesInvestir dans la nouvelle génération de startups spécialisées dans le Zero Trust et l’IA.
Home
Solliciter une démoContactez-nous

Zscaler and APPI

Contents

  1. Introduction
  2. What Is Personal Information Under the APPI?
  3. How Does Zscaler Comply with the APPI?
  4. Helpful Links Regarding the APPI

Introduction

Japan’s general data protection law is the Act on the Protection of Personal Information (“APPI”). The APPI was first enacted in 2003, and significantly amended effective 2017, with further amendments to become effective April 1, 2022. The APPI is a comprehensive, cross-sectoral framework that regulates private businesses using personal information databases. The APPI incorporates the eight basic principles under the Guidelines on the Protection of Privacy and Transborder Flows of Personal Data from the Organisation for Economic Co-operation and Development.

Similar to the GDPR distinction between controllers and processors, the APPI makes a distinction between entities (“business operators,” in APPI terminology) with the authority to control and make decisions about retained personal data (i.e. our customers), and third party service providers that act on behalf of a business operator in processing personal information (i.e. Zscaler).

With respect to cross-border transfers of personal information, the transfer or disclosure of personal data to a third party located outside of Japan requires the data subject's prior consent, unless an exception applies. Exceptions include: (1) the third party is in a country that offers the same level of protection for personal information as Japan, as determined by the Personal Information Protection Commission (the “Commission”) (currently only the European Economic Area and the UK have been so designated), or (2) the third party has established a system to continuously ensure that it undertakes the same level of protective measures required under the APPI. In Zscaler's End User Subscription Agreement, Zscaler commits to the protective measures required by the APPI.

In 2019, the European Commission determined that Japan provides a comparable level of protection of personal data to that in the European Union, thus permitting the free flow of personal data from the European Economic Area to Japan.

The revisions to the APPI that will take effect in April 2022 include expanding data subjects' control over their data, enabling internal big data uses under specific circumstances, and increasing fines for violations.

Zscaler is committed to our customers’ success, including compliance with the APPI, and will assist our customers in satisfying their APPI obligations.

What Is Personal Information Under the APPI?

Personal information under the APPI includes information about a living individual from which the identity of the individual can be ascertained, and includes information that enables identification of the individual by easy reference to, or combination with, other information. 

With the 2017 revision to the APPI, “personal information” includes “personal identifier codes”: characters, numbers, symbols and/or other codes for computer use that represent certain specified personal physical characteristics (such as DNA sequences, facial appearance, finger and palm prints) that are sufficient to identify a specific individual. In addition, identifier numbers such as those on passports, driver's licenses and resident's cards are personal information. 

The revised APPI added a new category of sensitive data that could be used as the basis for discrimination or prejudice, such as medical history, marital status, race, religious beliefs and criminal records. Business operators always need the prior consent of the individual concerned to process such sensitive data.

How Does Zscaler Comply with the APPI?

In its role as a processor of customer data that may be subject to the APPI, Zscaler has several compliance obligations, including the following:

1. Purpose of Use. The APPI requires that a business operator specify the purpose of use of the personal information collected; and once the purpose of use has been identified, the business operator may not make any changes to such purpose that is beyond the scope of the original purpose. Zscaler only uses customer data for the purpose of providing its services and products to the customer.

2. Sharing of Personal Information. With limited exceptions, the APPI does not permit personal information to be disclosed to a third party without the prior consent of the individual. Zscaler does not share customer data with third parties except as disclosed to and permitted by the customer (for example, the sub-processors listed at https://www.zscaler.com/privacy-compliance/subprocessors).

3. Security. The APPI requires that business operators (i) take necessary and appropriate measures to safeguard and protect against unauthorized disclosure of, loss of, or damage to the personal information they process, and (ii) conduct necessary and appropriate supervision over their employees and service providers who process personal data. The Commission has promulgated mandatory and recommended security measures under the APPI. Consistent with the requirements of the APPI and the Commission’s guidance, Zscaler has developed and implemented security policies to protect all personal information against loss, theft, or any unauthorized access, disclosure, copying, use or modification, taking into account the sensitivity of the information and other factors.

4. Data breaches. Zscaler will promptly notify its customers of any data breach involving customer data and provide reasonable assistance to its customers to comply with any legally required notifications, including reports to Japan's Personal Information Protection Commission.

5. Cross-border transfers. As noted above, the APPI imposes restrictions on transfers of personal information outside of Japan. Zscaler satisfies the cross-border transfer requirements of the APPI by the commitments Zscaler makes to protect personal information in its End User Subscription Agreement. Zscaler will take all necessary measures to ensure the continued proper handling of personal information and the provision of information upon the request of data subjects.

6. Rights of data subjects. The APPI gives data subjects the right to require that a business operator disclose the purpose of processing of their personal information, how they can access and correct their personal information, how they can suspend the processing of their personal information, and where they can submit complaints concerning the handling of their personal information. Zscaler assists its customers in fulfilling their obligations to allow data subjects to exercise their rights under the APPI.

7. Audits. The APPI requires business operators that engage third party processors to evaluate the compliance of such third party processors with the APPI through onsite audits, periodic reporting, or other appropriate means. Zscaler will submit to audits or provide reports as necessary to demonstrate Zscaler’s compliance with the APPI.

Helpful Links Regarding the APPI

Japan Personal Information Protection Commission: https://www.ppc.go.jp/en/

Text of the APPI: https://www.jetro.go.jp/ext_images/usa/APPI.pdf 

NOTE: While this site is designed to help organizations understand the APPI in connection with Zscaler's services and products, the information contained herein may not be construed as legal advice and organizations should consult with their own legal counsel with respect to interpreting their unique obligations under Japan’s data protection laws.

Plateforme Zero Trust
AI Security
Sécurité des données
SecOps
Produits et solutions
Visite guidée du produit
Industries
Partenaires
Carbone
À propos de Zscaler
FAQ sur Zscaler
Leadership
Carrières
Investisseurs
Presse
Responsabilité
Contact
Tarifs
Red Canary
Community
Analysts
News
Zenith Live
Événements
Application Executive Insights
Recherche de ThreatLabZ
Bibliothèque de ressources
Blog
Webinaires
Zpedia
Cyber Academy
Témoignages de réussite de nos clients
Customer Success Center
Contacter l'assistance
Portail d'aide
Avis de sécurité
Révéler une vulnérabilité
Security Risk Assessments
Conformité
Portail des partenaires
Home

Zscaler est universellement reconnu comme le leader du Zero Trust. S’appuyant sur le plus grand cloud de sécurité du monde, Zscaler anticipe, sécurise et simplifie l’expérience commerciale des entreprises les plus renommées. 

Visitez notre page Facebook(opens in a new tab)Trouvez-nous sur LinkedIn(opens in a new tab)Suivez-nous sur X(opens in a new tab)Abonnez-vous à notre chaîne Youtube(opens in a new tab)Suivez-nous sur Instagram(opens in a new tab)
Plan du siteConfidentialitéLégalSécuritéPréférences en matière de cookies
© 2026 Zscaler, Inc.

Tous droits réservés. Zscaler™ et les autres marques commerciales répertoriées sur zscaler.com/legal/trademarks sont soit 1) des marques déposées ou des marques de service, soit 2) des marques commerciales ou des marques de service de Zscaler, Inc. aux États-Unis et/ou dans d’autres pays. Toutes les autres marques commerciales appartiennent à leurs propriétaires respectifs.