OTHER ADMINISTRATIVE SERVICES 1. Coordinate the layout, printing and electronic delivery of publicly disseminated prospectuses and shareholder reports, make recommendations to improve their effectiveness or reduce expenses. 2. Perform internal audit examinations in accordance with a charter adopted by the Investment Company. 3. Monitor enterprise level risks associated with the services provided herein in accordance with a charter adopted by Investment Company. 4. Develop and recommend changes in the investment strategy and operation of the Investment Company that may be in the interest of its Shareholders. 5. Provide individuals reasonably acceptable to the Board for nomination, appointment, or election as the following officers of the Investment Company, who will be responsible for the management of certain of the Investment Company's affairs as specified in the Investment Company's charter documents and by-laws, subject to direction by the Board: (i) the president and principal executive officer, (ii) the treasurer and principal financial and accounting officer; (iii) the secretary, and (iv) such other officers as are mutually agreeable. 6. For each Fund that is not an ETF, monitor trading activity to help identify market timers and recommend policies to deter market timing. 7. For each Fund that is not an ETF, review potential intermediary clients and existing intermediary clients as appropriate to determine/monitor the client’s ability to adhere to the terms of any servicing agreement between the client and Investment Company. 8. For each Fund that is an ETF, review potential authorized participants and existing authorized participants as appropriate to determine/monitor the authorized participant’s ability to adhere to the terms of the authorized participant agreement between the authorized participant and the Fund’s distributor. 9. Review and recommend changes to the transfer agent’s policies and procedures to mitigate fraud, enhance shareholder services or reduce expenses. 10. Review and recommend changes to policies and procedures and operating processes designed to reduce Fund expenses. 11. Respond to all inquiries or other communications from shareholders and other parties, not otherwise provided by the Investment Company’s other service providers; if the inquiry is more properly responded to by another of the Investment Company’s service providers, referring the individual making the inquiry to the appropriate person. 12. Provide services and support, as requested by the Responsible Investing Office (“RIO”), in relation to environmental, social and governance (“ESG”) investing by the Funds, which include monitoring compliance with its policies and procedures with all applicable laws, rules and regulations. 13. Perform the following services for each Fund, as applicable, either itself or through its affiliate, Federated Shareholder Services company; (i) select and perform due diligence regarding proposed new owners of omnibus accounts as proposed recordkeeping agents for the Investment Company, (ii) enter into agreements as agent for the Investment Company, or any of them, substantially in the form most recently approved by the Board, with the registered owners of omnibus accounts for the provision of services necessary for the recordkeeping or sub-accounting of share positions held in underlying sub-accounts (“Recordkeeping Agreements”), together with such changes thereto as may be agreed to by FAS so long as such changes do not (a) increase the fees payable by the Investment Company under the Recordkeeping Agreements, (b) alter the indemnity obligations of the Investment Company owing to or from the Investment Company thereunder or (c) otherwise materially alter the obligations of the Investment Company under the Recordkeeping Agreements, (iii) agree, on behalf of the Investment Company, to make payments for services rendered under Recordkeeping Agreements out of the assets of the Investment Company in amounts not to exceed the amounts determined from time to time by the Board, and (iv) give instructions to the transfer agent of the Investment Company (the “Transfer Agent”), for and on behalf of the Investment Company as “Proper Instructions” of the Investment Company under and pursuant to the agreement for transfer agency services with the Transfer Agent, to perform the services of Company and/or the Investment Company under each such Recordkeeping Agreement, excepting only the indemnity obligations owning from the Investment Company or Company thereunder.
Handling Sensitive Personal Information and Breach Notification A. As part of its contract with HHSC Contractor may receive or create sensitive personal information, as section 521.002 of the Business and Commerce Code defines that phrase. Contractor must use appropriate safeguards to protect this sensitive personal information. These safeguards must include maintaining the sensitive personal information in a form that is unusable, unreadable, or indecipherable to unauthorized persons. Contractor may consult the “Guidance to Render Unsecured Protected Health Information Unusable, Unreadable, or Indecipherable to Unauthorized Individuals” issued by the U.S. Department of Health and Human Services to determine ways to meet this standard. B. Contractor must notify HHSC of any confirmed or suspected unauthorized acquisition, access, use or disclosure of sensitive personal information related to this Contract, including any breach of system security, as section 521.053 of the Business and Commerce Code defines that phrase. Contractor must submit a written report to HHSC as soon as possible but no later than 10 business days after discovering the unauthorized acquisition, access, use or disclosure. The written report must identify everyone whose sensitive personal information has been or is reasonably believed to have been compromised. C. Contractor must either disclose the unauthorized acquisition, access, use or disclosure to everyone whose sensitive personal information has been or is reasonably believed to have been compromised or pay the expenses associated with HHSC doing the disclosure if: 1. Contractor experiences a breach of system security involving information owned by HHSC for which disclosure or notification is required under section 521.053 of the Business and Commerce Code; or 2. Contractor experiences a breach of unsecured protected health information, as 45 C.F.R. §164.402 defines that phrase, and HHSC becomes responsible for doing the notification required by 45 C.F.R. §164.404. HHSC may, at its discretion, waive Contractor's payment of expenses associated with HHSC doing the disclosure.
Incident Event and Communications Management a. Incident Management/Notification of Breach - DST shall develop, implement and maintain an incident response plan that specifies actions to be taken when DST or one of its subcontractors suspects or detects that a party has gained material unauthorized access to Fund Data or systems or applications containing any Fund Data (the “Response Plan”). Such Response Plan shall include the following: i. Escalation Procedures - An escalation procedure that includes notification to senior managers and appropriate reporting to regulatory and law enforcement agencies. This procedure shall provide for reporting of incidents that compromise the confidentiality of Fund Data (including backed up data) to Fund via telephone or email (and provide a confirmatory notice in writing as soon as practicable); provided that the foregoing notice obligation is excused for such period of time as DST is prohibited by law, rule, regulation or other governmental authority from notifying Fund. ii. Incident Reporting - DST will use commercially reasonable efforts to promptly furnish to Fund information that DST has regarding the general circumstances and extent of such unauthorized access to the Fund Data.