New Hampshire Specific Data Security Requirements The Provider agrees to the following privacy and security standards from “the Minimum Standards for Privacy and Security of Student and Employee Data” from the New Hampshire Department of Education. Specifically, the Provider agrees to: (1) Limit system access to the types of transactions and functions that authorized users, such as students, parents, and LEA are permitted to execute; (2) Limit unsuccessful logon attempts; (3) Employ cryptographic mechanisms to protect the confidentiality of remote access sessions; (4) Authorize wireless access prior to allowing such connections; (5) Create and retain system audit logs and records to the extent needed to enable the monitoring, analysis, investigation, and reporting of unlawful or unauthorized system activity; (6) Ensure that the actions of individual system users can be uniquely traced to those users so they can be held accountable for their actions; (7) Establish and maintain baseline configurations and inventories of organizational systems (including hardware, software, firmware, and documentation) throughout the respective system development life cycles; (8) Restrict, disable, or prevent the use of nonessential programs, functions, ports, protocols, and services; (9) Enforce a minimum password complexity and change of characters when new passwords are created; (10) Perform maintenance on organizational systems; (11) Provide controls on the tools, techniques, mechanisms, and personnel used to conduct system maintenance; (12) Ensure equipment removed for off-site maintenance is sanitized of any Student Data in accordance with NIST SP 800-88 Revision 1; (13) Protect (i.e., physically control and securely store) system media containing Student Data, both paper and digital; (14) Sanitize or destroy system media containing Student Data in accordance with NIST SP 800-88 Revision 1 before disposal or release for reuse; (15) Control access to media containing Student Data and maintain accountability for media during transport outside of controlled areas; (16) Periodically assess the security controls in organizational systems to determine if the controls are effective in their application and develop and implement plans of action designed to correct deficiencies and reduce or eliminate vulnerabilities in organizational systems; (17) Monitor, control, and protect communications (i.e., information transmitted or received by organizational systems) at the external boundaries and key internal boundaries of organizational systems; (18) Deny network communications traffic by default and allow network communications traffic by exception (i.e., deny all, permit by exception); (19) Protect the confidentiality of Student Data at rest; (20) Identify, report, and correct system flaws in a timely manner; (21) Provide protection from malicious code (i.e. Antivirus and Antimalware) at designated locations within organizational systems; (22) Monitor system security alerts and advisories and take action in response; and (23) Update malicious code protection mechanisms when new releases are available.
Procedures for Providing NP Through Full NXX Code Migration Where a Party has activated an entire NXX for a single Customer, or activated at least eighty percent (80%) of an NXX for a single Customer, with the remaining numbers in that NXX either reserved for future use by that Customer or otherwise unused, if such Customer chooses to receive Telephone Exchange Service from the other Party, the first Party shall cooperate with the second Party to have the entire NXX reassigned in the LERG (and associated industry databases, routing tables, etc.) to an End Office operated by the second Party. Such transfer will be accomplished with appropriate coordination between the Parties and subject to appropriate industry lead times for movements of NXXs from one switch to another. Neither Party shall charge the other in connection with this coordinated transfer.
Access Toll Connecting Trunk Group Architecture 9.2.1 If CSTC chooses to subtend a Verizon access Tandem, CSTC’s NPA/NXX must be assigned by CSTC to subtend the same Verizon access Tandem that a Verizon NPA/NXX serving the same Rate Center Area subtends as identified in the LERG. 9.2.2 CSTC shall establish Access Toll Connecting Trunks pursuant to applicable access Tariffs by which it will provide Switched Exchange Access Services to Interexchange Carriers to enable such Interexchange Carriers to originate and terminate traffic to and from CSTC’s Customers. 9.2.3 The Access Toll Connecting Trunks shall be two-way trunks. Such trunks shall connect the End Office CSTC utilizes to provide Telephone Exchange Service and Switched Exchange Access to its Customers in a given LATA to the access Tandem(s) Verizon utilizes to provide Exchange Access in such LATA. 9.2.4 Access Toll Connecting Trunks shall be used solely for the transmission and routing of Exchange Access to allow CSTC’s Customers to connect to or be connected to the interexchange trunks of any Interexchange Carrier which is connected to a Verizon access Tandem.
Personnel Equipment and Material Engineer shall furnish and maintain, at its own expense, quarters for the performance of all Engineering Services, and adequate and sufficient personnel and equipment to perform the Engineering Services as required. All employees of Engineer shall have such knowledge and experience as will enable them to perform the duties assigned to them. Any employee of Engineer who, in the reasonable opinion of County, is incompetent or whose conduct becomes detrimental to the Engineering Services shall immediately be removed from association with the Project when so instructed by County. Engineer certifies that it presently has adequate qualified personnel in its employment for performance of the Engineering Services required under this Contract, or will obtain such personnel from sources other than County. Engineer may not change the Project Manager without prior written consent of County.
Goods and Services 4.3.1. The Supplier shall ensure that the Goods and/or the Services provided are fit for the purposes that may reasonably be inferred from the technical specifications and in accordance with the timetable for performance defined in the Contract. In any event the Supplier commits himself to achieve performance and results stipulated in the Contract. 4.3.2. The Goods and/or Services shall be delivered in a state of full completion with the complete “Documentation” (any operation and maintenance manuals, drawings, calculations, technical data, logic diagrams, progress reports, quality documentation, conformity certificates, test reports, bill of lading, certificates of origin, export control classification list number as per any applicable export regulation - such as the European Council Regulation 428/2009 (as amended) and/or the U.S. Export Administration Regulations (“EAR”), percentage of U.S. origin content, U.S. Export Control Classification Number (“ECCN”) or U.S. Munitions List category (“USML”) (if applicable) export authorizations and licenses, Harmonized Tariff Code - and any such other documents required under the Contract and/or applicable Laws) associated therewith as well as all instructions, recommendationsandother indicationsnecessaryin orderfor themtobeused correctly and under the appropriate safety conditions. If so required by the Purchaser, the Supplier shall submit any such Documentation to the Purchaserwith sufficient timeforreview andapproval by the Customer, in accordancewith the time-lines agreed between the Purchaser and the Customer. Where the Documentation provided by the Supplier is not compliant with Purchaser’s contractual requirements, the Supplier must make the necessary modifications, and indemnify the Purchaser for any costs, liabilities or penalties incurred by the Purchaser as a result of the non-compliance and/or delay. 4.3.3. Goods or Services that donotmeetall the requirements set in this Article 4.3 shall be considered as having a Non-Conformity as per Article 10 of these General Conditions and may be recorded as a non-conformity event (NCE) as defined in the Supplier Quality Manual. 4.3.4. If the Supplier is not certain that the results of the Services or Goods comply with the requirements defined in this Article 4.3, it shall inform immediately the Purchaser thereof in writing, providing all the needed indications concerning the risks of non- compliance and the measures that the Supplier intends to take in order to remedy the situation. The Purchaser shall notify its acceptance or rejection of the Supplier’s proposals as soon as possible and in writing. 4.3.5. If the Purchaser assesses on its part that the Supplier is not performing the Services and/or supplying the Goods in accordance with the Contract, itmay require the Supplier to indicate to it, in writing, the measures that the Supplier intends to take to remedy the situation. The Purchaser shall notify the Supplier in writing as soon as possible of its acceptance or rejection of the Supplier’s proposals.
Proposed Goods and Services Proposed Goods and Services pdf D/M/WBE Certification OPTIONAL No response Warranty No response
Proposed Policies and Procedures Regarding New Online Content and Functionality By October 31, 2017, the School will submit to OCR for its review and approval proposed policies and procedures (“the Plan for New Content”) to ensure that all new, newly-added, or modified online content and functionality will be accessible to people with disabilities as measured by conformance to the Benchmarks for Measuring Accessibility set forth above, except where doing so would impose a fundamental alteration or undue burden. a) When fundamental alteration or undue burden defenses apply, the Plan for New Content will require the School to provide equally effective alternative access. The Plan for New Content will require the School, in providing equally effective alternate access, to take any actions that do not result in a fundamental alteration or undue financial and administrative burdens, but nevertheless ensure that, to the maximum extent possible, individuals with disabilities receive the same benefits or services as their nondisabled peers. To provide equally effective alternate access, alternates are not required to produce the identical result or level of achievement for persons with and without disabilities, but must afford persons with disabilities equal opportunity to obtain the same result, to gain the same benefit, or to reach the same level of achievement, in the most integrated setting appropriate to the person’s needs. b) The Plan for New Content must include sufficient quality assurance procedures, backed by adequate personnel and financial resources, for full implementation. This provision also applies to the School’s online content and functionality developed by, maintained by, or offered through a third-party vendor or by using open sources. c) Within thirty (30) days of receiving OCR’s approval of the Plan for New Content, the School will officially adopt, and fully implement the amended policies and procedures.
Information and Services Required of the Owner The Owner shall provide information with reasonable promptness, regarding requirements for and limitations on the Project, including a written program which shall set forth the Owner’s objectives, constraints, and criteria, including schedule, space requirements and relationships, flexibility and expandability, special equipment, systems, sustainability and site requirements.
TOBACCO FREE CAMPUS All Orange County operations under the Board of County Commissioners shall be tobacco free. This policy shall apply to parking lots, parks, break areas and worksites. It is also applicable to Contractors and their personnel during contract performance on County owned property. Tobacco is defined as tobacco products including, but not limited to, cigars, cigarettes, e-cigarettes, pipes, chewing tobacco and snuff. Failure to abide by this policy may result in civil penalties levied under Chapter 386, Florida Statutes and/or contract enforcement remedies.
Federal Medicaid System Security Requirements Compliance Party shall provide a security plan, risk assessment, and security controls review document within three months of the start date of this Agreement (and update it annually thereafter) in order to support audit compliance with 45 CFR 95.621 subpart F, ADP System Security Requirements and Review Process.