About Making Information Security Practical and Easy to Understand
This podcast shares practical insights on information security, privacy protection, corporate IT, and AI governance, based on real experience supporting small and mid-sized companies in Japan.
Topics include ISMS (ISO/IEC 27001), AIMS (AI Management Systems), incident response, and responsible AI use — all explained from an operational, in-house perspective rather than theory alone.
One unique focus of this podcast is Japan’s Privacy Mark (P-Mark), a Japanese privacy management system that is widely used in Japan but not well known internationally. In this podcast, I explain what P-Mark is,
The English version of this podcast will be on a short break until the end of August while I focus on my CISA studies and several ongoing projects.
During this time, I’ll be learning more about IT governance, risk management, auditing, internal controls, IPO readiness, and J-SOX.
I’m also considering sharing my CISA learning journey and practical experiences in future episodes.
My goal is to return in September with new insights, fresh perspectives, and more practical content for security and IT professionals.
Thank you for your support and understanding.
Stay safe.Stay secure.
10 Jun 2026
ISMS-05Understanding Your Organization (Clause 4.1)
ISMS does not begin with policies, procedures, or templates.
It begins with understanding your organization.
In this episode, Yoshida explains Clause 4.1 — Understanding the Organization and Its Context, one of the most important foundations of an effective ISMS.
Topics include:
understanding your business and objectives
identifying internal and external issues
recognizing the risks that affect your organization
avoiding the common mistake of relying only on templates
A practical and easy-to-understand episode for corporate IT teams, managers, and organizations that want to build an ISMS that truly fits their business.
7 Jun 2026
AIMS-22. AI, Compliance, and Legal Considerations
Many people worry about legal issues when using AI.
For example:
terms of service
copyright
personal data
confidential information
These topics may seem difficult.
But the basic ideas are often simple.
In this episode,
we explain legal and compliance considerations
for AI use in a practical way.
You will learn:
what to check before using AI
common legal concerns
simple ways to reduce risk
👉 Legal teams do not want to stop AI.
They want organizations to use AI safely.
This episode helps you understand the basics
without getting overwhelmed.
Contact Making Information Security Practical and Easy to Understand
Guest appearances
Does not typically book guests
Based on episode analysis; this does not confirm that the show is currently accepting guests.
Host of Making Information Security Practical and Easy to Understand?
Claim your podcast to manage its listing and keep your show details accurate.
Pod Engine is an independent podcast discovery and analytics service and is not affiliated with or endorsed by this podcast. Artwork and show content belong to their owners. Full legal notice.
Explore this show Podcast research with Pod Engine