Corporate Governance

Do the company's internal rules prohibit insiders, such as directors or employees, from profiting from information that is not available in the market, as set forth in the Company's internal rules and disclosed on the Company's website?


Operating Situation:

♦ In accordance with Article 11 of the Corporate Governance Code, the Company should pay attention to the shareholders' right to know and comply with the relevant regulations on information disclosure, and provide information on the Company's finance, business, insider shareholding and corporate governance to the shareholders through the Market Observation Post System or the website set up by the Company.

♦ The Company shall urge other persons who have access to material internal information of the Company by virtue of their identity, occupation or control to comply with the relevant provisions of the Act. Directors, managers and employees of the company shall perform their business with the care and loyalty of a good manager, the principle of good faith, and shall sign confidentiality agreements. The above-mentioned personnel shall not disclose material information they know to others and shall not inquire or collect material information unrelated to their duties.

♦ Please refer to the Company's internal regulations for the relevant corporate governance rules.​

 

Has the Company established and implemented reasonable employee benefits (including salary, vacation and other benefits) and appropriately reflected the results of performance in employees’ remuneration?


Operating Situation:

♦ The Company has set up "Administrative Measures for Employee Leave and Overtime Work" and "Measures for Employee Health Checks". In addition to regulating employees’ leave, insurance, wedding and funeral subsidies, and health checks, the Company is also committed to providing a friendly working environment, including Group insurance, annual health check, bonuses for 3 festivals, birthday parties, employee travel, coffee and snacks supply and other employee welfare matters. Moreover, in order to keep abreast of the welfare standards in the market, the Company holds quarterly labor-management meetings to discuss employee welfare-related issues in order to improve employee welfare.

♦ The Company has established the "Compensation Committee Organization Regulations", which stipulates that the performance evaluation standards, annual and long-term performance goals, and remuneration policies, systems, standards and structures of the Company's directors and managers shall be reviewed periodically, with reference to the usual level of payments in the industry. Employees' salary is determined by considering the Company's financial condition, operating performance and policies, as well as the duties, abilities and performance of the positions held to ensure competitiveness and motivation, Moreover, if the Company makes a profit in the year, 10%-16% of the profit shall be set aside as employee remuneration in accordance with the Company's "Articles of Incorporation.

♦ The Company has established the "Employee Performance Management Regulations" as the basis in determining employees' salary. The Company's salary policy is regularly reviewed with reference to the market salary level. In addition, various bonuses have been established in accordance with the "Employee Reward and Punishment Regulations" to reward employees for their performance at work. The relevant bonuses are also granted as year-end bonuses and performance bonuses depending on the company's annual operating performance, financial status, operational status and individual performance; with a corresponding salary adjustment mechanism. In 2021, an annual salary adjustment of approximately 3.5% has been made based on employee performance in order to achieve the purpose of rewarding employees.​

♦ The Company has  "Work Rules" that is employee retirement policy. For employees who are eligible to the Labor Pension Regulations (New Labor Retirement System), the company shall, in accordance with the provisions of the law, withdraw labor pensions to the employee individual account established by the Labor Insurance Bureau, so that employees can have a better quality of protection for their retirement life.

 

In accordance with Article 23 of the Company's "Code of Coportate Giverance Practiew", the Board of Directors as a whole should possess the following competencies to achieve the desired objectives of corporate governance. 


♦ Operational judgment ability.

♦ Accounting and financial analysis skills.

♦ Business management skills.

♦ Crisis management skills.

♦ Industry knowledge.

♦ International market perspective.

♦ Leadership skills.

♦ Decision-making ability.​

In order to achieve the aforementioned objectives and enhance the effectiveness of the Board of Directors, the Company has established a policy on diversity of board members. In accordance with the provisions of the "Code of Corporate Governance Practices", Article 23, in addition to the fact that the number of directors who are also managers of the Company should not exceed one-third of the total number of directors, it is advisable to formulate an appropriate diversity policy with respect to its operation, business model and development needs, including but not limited to the following 2 major criteria:

♦ Basic requirements and values: gender, age, nationality and culture, etc.

♦ Professional knowledge and skills: Professional background (such as law, accounting, industry, finance, marketing or technology), professional skills and industry experience, etc.

The Company currently has 7 board members, including 3 independent directors, with expertise in finance & accounting, law, electrical & electronics, food science, and chemical engineering. The board of directors is currently all male. The company has always been concerned about gender equality of board members. The Company hopes to select suitable female Board members in the future.

 

Does the Company have a succession plan for Board members and key management?


Succession Plan of Board Members
The election of Directors is based on a candidate nomination system, and the shareholders will vote to elect the Board of Directors.
The Board of Directors is the highest governing body of the Company. Members of the Board should have professional backgrounds and skills, and the required expertise in the business of the Company, and have the ability to conduct business planning, operational judgment, accounting and financial analysis, crisis management, leadership and decision-making skills.

Succession Plan of Key Management
The successor of the Company's key management should possess professional ability, innovation, high execution, integrity and excellent work ability, as well as be active in their duties.
The Company has established a training program for supervisors and holds regular management meetings to develop management skills to enhance management capabilities in practice, and to organize an excellent management team to create benefits for shareholders and employees, and to run a sustainable business.

 

Does the Company make reference to international human rights conventions and formulate policies and management plans to protect human rights?


Our company abides by and supports various international conventions that aim to protect human rights and comply with labor laws and regulations.
M3Tek's Human Rights Policy:

♦ Eliminate gender discrimination in the workplace.

♦ Protect the rights and dignity of employees.

♦ Provide a safe, healthy and hygienic working environment.

 

Disclosure of Information and Communication Security Management Information


Information and Communication Security Risk Management Framework

In 2023, our company established the "Information Security Promotion Team" responsible for implementing information operation security management plans, building and maintaining an information security management system, and coordinating the formulation, execution, risk management, and compliance auditing of information security and protection policies. The Information Security Promotion Team is chaired by CEO, supervised by the MIS Department Manager and Chief Information Security Officer, with the CEO and Corporate Governance Officer as team members, and the Internal Audit Director as an observer.

Through annual management review meetings, the Information Security Promotion Team audits the results of information security risk analysis and the protective measures and strategies adopted by our company, ensuring the continued applicability, appropriateness, and effectiveness of the information security management system. At least once a year, the team reports on the effectiveness of information security management and the direction of information security strategy to the Board of Directors, with regular reviews and amendments.

Information and Communication Security Policy

To maintain the confidentiality, integrity, and availability of the company's information assets, and to ensure the security of user data privacy, the following objectives are to be achieved through the collective efforts of all our colleagues:

♦ Strengthen personnel’s awareness of information security. Employees should participate in information and communication security-related education and training to enhance the overall awareness of information security within the company.

♦ Protect the security of the company's business services to avoid unauthorized modifications and ensure their accuracy and completeness.

♦ Establish a business continuity plan for the company to ensure the sustained operation of our business services.

♦ Ensure that the execution of the company's various business services complies with relevant laws and regulations.

The company has implemented and established comprehensive information security management procedures and measures to reduce corporate information security threats from the system, technical, and procedural perspectives, creating an information security environment that meets customer needs and continuously improving it.

The company has constructed multi-layered information security defense mechanisms, continuously integrating new risk control technologies, and enhancing the efficiency of detection and response procedures for various information security incidents through intelligent/automated mechanisms. We also strengthen information security and cybersecurity protection processes to safeguard our critical assets.

Annually, the company engages renowned information security vendors to conduct system vulnerability scans and social engineering drills to continuously improve our information security management and defense capabilities.

The company periodically conducts information security training for all employees to enhance awareness of information security.

Specific Management Plans

To achieve the information security policy and objectives, and establish comprehensive protection, the management initiatives and specific management plans implemented are as follows:

♦ Enhancing Information Security Defense Capabilities: Regularly conduct vulnerability scans of the information security system and reinforce and repair them to reduce security risks. Establish a network security incident response plan and regularly carry out disaster recovery drills.

♦ Refining Information Security Management Procedures: Establish an information security policy, ensure employees comply with security regulations and follow SOPs, and continue to make improvements.

♦ Enhancing Network and Application Security: Implement systems for intrusion detection and application detection. Optimize security in segregated network areas and enable multi-factor authentication for account logins.

♦ Legal Compliance: The company has complied with relevant standards and regulations of information and communication security laws, serving as a method and reference for achieving various risk management objectives.

♦ Risk Control: Collaborate with international information security companies to conduct comprehensive information security check-ups through their professional services, using the objective results from third-party verification as the basis for advanced information security enhancement.

♦ Education and Training: Conduct regular and irregular information security education and training for all staff, or carry out social engineering phishing email tests, to enhance awareness of information security. Ensure the implementation of information security operations with the support of senior management and all departments, down to every employee.

♦ Collaborative Information Security Defense: Join the TWCERT information security defense organization.

Resources Invested in Information and Communication Security Management

Information security has become an important issue for the company's operations. The corresponding information security management initiatives and resource investment plans are as follows:

♦ Dedicated Personnel: There is a dedicated Information and Communication Security Officer and one specialized information security staff member responsible for the company's information security planning, technology implementation, and related audits, to maintain and continuously strengthen information security.

♦ Customer Satisfaction: No major information security incidents and no complaints about violations or loss of customer data.

♦ Education and Training: All new employees complete information security education and training courses before joining; a total of four social engineering phishing email tests are conducted this year.

♦ Information Security Announcements: More than twenty information security announcements are produced, conveying important information security regulations and precautions.

♦ Information Security Promotion Team Meetings: One team meeting is held to report on the company's information security policy and information security initiatives at least once a year.

You are now leaving our web site!

You are now leaving our web site. The web site you wish to link to is owned or operated by an entity other than M3 technology Inc. . We do not control this third party web site. We are providing this link for your convenience only and we are not responsible for the availability of or the content located on or through this third party web site, the accuracy, completeness, timeliness, or legality of any information contained in this third party web site, and any opinions expressed therein, nor for any link contained in this third party web site. This third party web site is not investigated, monitored, or checked for accuracy, completeness, timeliness, or legality, by M3 Technology Inc.. The link from our web site to this third party web site does not imply that we approve of, endorse, or recommend this third party web site. We expressly disclaim all warranties, express or implied, as to the accuracy, legality, reliability, timeliness, quality, or validity of any content on this third party web site.