Breach of Information Security Guidelines Sample Clauses

Breach of Information Security Guidelines. Every EXL employee must be aware of their individual responsibility to maintain compliance with Information Security, Cyber Security and Data Privacy policies and undergo periodic trainings and awareness in this area. All employees must refer to Information Security & Data Privacy Policy to understand the Company’s requirements with respect to the collection, storage, use, transmission and disposal of information in electronic, voice or tangible written forms. The policy also details out guidelines for laptop users, access control, Email access, password management, Blackberry and PDA usage and maintaining clean desk. All the employees of EXL are required to fully comply with the aforesaid policy. It is mandatory for all employees of EXL across levels to complete the Information Security Training within prescribed timelines (for details refer to ISG policy guidelines) Notwithstanding anything contained in clause 11.6, the Company reserves the right to terminate your employment without giving any notice period or pay in lieu thereof if you are in breach of the sub-clauses of clause 11.6 hereinabove.
AutoNDA by SimpleDocs

Related to Breach of Information Security Guidelines

  • Confidentiality and Use of Information (a) Consultant shall hold in trust for the District, and shall not disclose to any person, any confidential information. Confidential information is information which is related to the District's research, development, trade secrets and business affairs, but does not include information which is generally known or easily ascertainable by nonparties through available public documentation.

  • CONFIDENTIALITY/SAFEGUARDING OF INFORMATION The CONTRACTOR shall not use or disclose any information concerning the AGENCY, or information that may be classified as confidential, for any purpose not directly connected with the administration of this contract, except with prior written consent of the AGENCY, or as may be required by law.

  • Safeguarding of Information 8(1) Where a Crown Servant or Government Contractor, by virtue of his position as such, has in his possession or under his control any document or other article which it would be an offence under any of the foregoing provisions of this Act for him to disclose without lawful authority he is guilty of an offence if –

  • Collection and Use of Information (a) Licensee acknowledges that Licensor may, directly or indirectly through the services of Third Parties, collect and store information regarding use of the Software and about equipment on which the Software is installed or through which it otherwise is accessed and used, through:

  • Disclosure of Information to Third Parties We will disclose information to third parties about your account or electronic transfers you make:

  • Release of Information Except as required by law, no public release of any information, or confirmation or denial of same, with respect to this Contract or the subject matter hereof, will be made by SELLER or its subcontractors without the prior written approval of LOCKHEED XXXXXX. SELLER shall not use "Lockheed Xxxxxx," "Lockheed Xxxxxx Corporation," or any other trademark or logo owned by LOCKHEED XXXXXX, in whatever shape or form, without the prior written consent of LOCKHEED XXXXXX.

  • Use of Information The Agent may not use any information gained in connection with this Agreement and the transactions contemplated by this Agreement, including due diligence, to advise any party with respect to transactions not expressly approved by the Company.

  • Right of Information Members may provide that the judicial authorities shall have the authority, unless this would be out of proportion to the seriousness of the infringement, to order the infringer to inform the right holder of the identity of third persons involved in the production and distribution of the infringing goods or services and of their channels of distribution.

  • Security of Information Unless otherwise specifically authorized by the DOH Chief Information Security Officer, Contractor receiving confidential information under this contract assures that: • Encryption is selected and applied using industry standard algorithms validated by the National Institute of Standards and Technology (NIST) Cryptographic Algorithm Validation Program against all information stored locally and off-site. Information must be encrypted both in-transit and at rest and applied in such a way that it renders data unusable to anyone but authorized personnel, and the confidential process, encryption key or other means to decipher the information is protected from unauthorized access. • It is compliant with the applicable provisions of the Washington State Office of the Chief Information Officer (OCIO) policy 141, Securing Information Technology Assets, available at: xxxxx://xxxx.xx.xxx/policy/securing-information-technology-assets. • It will provide DOH copies of its IT security policies, practices and procedures upon the request of the DOH Chief Information Security Officer. • DOH may at any time conduct an audit of the Contractor’s security practices and/or infrastructure to assure compliance with the security requirements of this contract. • It has implemented physical, electronic and administrative safeguards that are consistent with OCIO security standard 141.10 and ISB IT guidelines to prevent unauthorized access, use, modification or disclosure of DOH Confidential Information in any form. This includes, but is not limited to, restricting access to specifically authorized individuals and services through the use of: o Documented access authorization and change control procedures; o Card key systems that restrict, monitor and log access; o Locked racks for the storage of servers that contain Confidential Information or use AES encryption (key lengths of 256 bits or greater) to protect confidential data at rest, standard algorithms validated by the National Institute of Standards and Technology (NIST) Cryptographic Algorithm Validation Program (CMVP); o Documented patch management practices that assure all network systems are running critical security updates within 6 days of release when the exploit is in the wild, and within 30 days of release for all others; o Documented anti-virus strategies that assure all systems are running the most current anti-virus signatures within 1 day of release; o Complex passwords that are systematically enforced and password expiration not to exceed 120 days, dependent user authentication types as defined in OCIO security standards; o Strong multi-factor authentication mechanisms that assure the identity of individuals who access Confidential Information; o Account lock-out after 5 failed authentication attempts for a minimum of 15 minutes, or for Confidential Information, until administrator reset; o AES encryption (using key lengths 128 bits or greater) session for all data transmissions, standard algorithms validated by NIST CMVP; o Firewall rules and network address translation that isolate database servers from web servers and public networks; o Regular review of firewall rules and configurations to assure compliance with authorization and change control procedures; o Log management and intrusion detection/prevention systems; o A documented and tested incident response plan Any breach of this clause may result in termination of the contract and the demand for return of all personal information.

  • Confidentiality of Information 8.1. By accessing this EHSAN AUCTIONEERS SDN. BHD. website, the E-Bidders acknowledge and agree that EHSAN AUCTIONEERS SDN. BHD. website may collect, retain, or disclose the E-Bidder’s information or any information by the e-bidders for the effectiveness of services, and the collected, retained or disclosed information shall comply with Personal Data Protection Act 2010 and any regulations, laws or rules applicable from time to time.

Time is Money Join Law Insider Premium to draft better contracts faster.