ELECTRONIC PRIVACY AND SECURITY Sample Clauses

ELECTRONIC PRIVACY AND SECURITY. 52.1. CONTRACTOR shall have a secure email system and send any email containing PII or PHI in a secure and encrypted manner. CONTRACTOR’S email transmissions shall display a warning banner stating that data is confidential, systems activities are monitored and logged for administrative and security purposes, systems use is for authorized users only, and that users are directed to log off the system if they do not agree with these requirements.
AutoNDA by SimpleDocs
ELECTRONIC PRIVACY AND SECURITY. A. Contractor shall have a secure email system and send any email containing PII or PHI in a secure and encrypted manner. Contractor’s email transmissions shall display a warning banner stating that data is confidential, systems activities are monitored and logged for administrative and security purposes, systems use is for authorized users only, and that users are directed to log off the system if they do not agree with these requirements.
ELECTRONIC PRIVACY AND SECURITY. A. Contractor shall have a secure email system and send any email containing PII or PHI in a secure and encrypted manner. Contractor’s email transmissions shall display a warning banner stating that data is confidential, systems activities are monitored and logged for administrative and security purposes, systems use is for authorized users only, and that users are directed to log off the system if they do not agree with these requirements. B. Contractor shall institute compliant password management policies and procedures, which shall include but are not limited to procedures for creating, changing, and safeguarding passwords. Contractor shall establish guidelines for creating passwords and ensuring that passwords expire and are changed at least once every 90 days. C. Any Electronic Health Records (EHRs) maintained by Contractor that contain any PHI or PII for clients served through this Agreement shall contain a warning banner regarding the PHI or PII contained within the EHR. Contractor that utilize an EHR shall maintain all parts of the clinical record that are not stored in the EHR, including but not limited to the following examples of client signed documents: discharge plans, informing materials, and health questionnaire. D. Contractor entering data into any County electronic systems shall ensure that staff are trained to enter and maintain data within this system.
ELECTRONIC PRIVACY AND SECURITY. All workstations and laptops and/or other portable devices that store PHI or PII either directly or temporarily must be encrypted using a Federal Information Processing Standards (FIPS) 140-2 certified algorithm which is 128bit or higher, such as Advanced 15 42 CFR §§ 422.504(i)(2) & 423.505(i)(2); 22 CCR § 51476; Welf. & Inst. Code § 14124.1. Encryption Standard (AES). The encryption solution must be full disk unless approved by the ACBHD Information Systems Security Office. Contractors shall have a secure system for sending emails and, if applicable, facsimiles (faxes). Contractor shall send any email or fax containing PHI or PII in a secure and encrypted manner. Contractor’s email transmissions shall display a warning banner stating that data is confidential, systems activities are monitored and logged for administrative and security purposes, systems use is for authorized users only, and that users are directed to log off the system if they do not agree with these requirements. Contractor shall institute compliant identification and authentication management policies and procedures, which shall include but are not limited to procedures for biometrics and creating, changing, and safeguarding passwords. Any Electronic Health Records (EHRs) maintained by Contractor that contain any PHI or PII for clients served through this Agreement shall contain a warning banner regarding the PHI or PII contained within the EHR. Contractors that utilize an EHR shall maintain all parts of the clinical record that are not stored in the EHR, including but not limited to the following examples of client signed documents: client plan, discharge plan, informing materials, and health questionnaire. In addition, Contractor shall comply with the requirements of the 21st Century Cures Act – Information Blocking Rule. Contractors entering data into any ACBHD EHR shall ensure that staff members are appropriately trained to enter and maintain data within this system.

Related to ELECTRONIC PRIVACY AND SECURITY

  • Data Privacy and Security Bank will implement and maintain a written information security program, in compliance with all federal, state and local laws and regulations (including any similar international laws) applicable to Bank, that contains reasonable and appropriate security measures designed to safeguard the personal information of the Funds' shareholders, employees, trustees and/or officers that Bank or any Subcustodian receives, stores, maintains, processes, transmits or otherwise accesses in connection with the provision of services hereunder. In this regard, Bank will establish and maintain policies, procedures, and technical, physical, and administrative safeguards, designed to (i) ensure the security and confidentiality of all personal information and any other confidential information that Bank receives, stores, maintains, processes or otherwise accesses in connection with the provision of services hereunder, (ii) protect against any reasonably foreseeable threats or hazards to the security or integrity of personal information or other confidential information, (iii) protect against unauthorized access to or use of personal information or other confidential information, (iv) maintain reasonable procedures to detect and respond to any internal or external security breaches, and (v) ensure appropriate disposal of personal information or other confidential information. Bank will monitor and review its information security program and revise it, as necessary and in its sole discretion, to ensure it appropriately addresses any applicable legal and regulatory requirements. Bank shall periodically test and review its information security program. Bank shall respond to Customer's reasonable requests for information concerning Bank's information security program and, upon request, Bank will provide a copy of its applicable policies and procedures, or in Bank's discretion, summaries thereof, to Customer, to the extent Bank is able to do so without divulging information Bank reasonably believes to be proprietary or Bank confidential information. Upon reasonable request, Bank shall discuss with Customer the information security program of Bank. Bank also agrees, upon reasonable request, to complete any security questionnaire provided by Customer to the extent Bank is able to do so without divulging sensitive, proprietary, or Bank confidential information and return it in a commercially reasonable period of time (or provide an alternative response that reasonably addresses the points included in the questionnaire). Customer acknowledges that certain information provided by Bank, including internal policies and procedures, may be proprietary to Bank, and agrees to protect the confidentiality of all such materials it receives from Bank. Bank agrees to resolve promptly any applicable control deficiencies that come to its attention that do not meet the standards established by federal and state privacy and data security laws, rules, regulations, and/or generally accepted industry standards related to Bank's information security program. Bank shall: (i) promptly notify Customer of any confirmed unauthorized access to personal information or other confidential information of Customer ("Breach of Security"); (ii) promptly furnish to Customer appropriate details of such Breach of Security and assist Customer in assessing the Breach of Security to the extent it is not privileged information or part of an investigation; (iii) reasonably cooperate with Customer in any litigation and investigation of third parties reasonably deemed necessary by Customer to protect its proprietary and other rights; (iv) use reasonable precautions to prevent a recurrence of a Breach of Security; and (v) take all reasonable and appropriate action to mitigate any potential harm related to a Breach of Security, including any reasonable steps requested by Customer that are practicable for Bank to implement. Nothing in the immediately preceding sentence shall obligate Bank to provide Customer with information regarding any of Bank's other customers or clients that are affected by a Breach of Security, nor shall the immediately preceding sentence limit Bank's ability to take any actions that Bank believes are appropriate to remediate any Breach of Security unless such actions would prejudice or otherwise limit Customer's ability to bring its own claims or actions against third parties related to the Breach of Security. If Bank discovers or becomes aware of a suspected data or security breach that may involve an improper access, use, disclosure, or alteration of personal information or other confidential information of Customer, Bank shall, except to the extent prohibited by Applicable Law or directed otherwise by a governmental authority not to do so, promptly notify Customer that it is investigating a potential breach and keep Customer informed as reasonably practicable of material developments relating to the investigation until Bank either confirms that such a breach has occurred (in which case the first sentence of this paragraph will apply) or confirms that no data or security breach involving personal information or other confidential information of Customer has occurred. For these purposes, "personal information" shall mean (i) an individual's name (first initial and last name or first name and last name), address or telephone number plus (a) social security number, (b) driver's license number, (c) state identification card number, (d) debit or credit card number, (e) financial account 22 number, (f) passport number, or (g) personal identification number or password that would permit access to a person's account or (ii) any combination of the foregoing that would allow a person to log onto or access an individual's account. This provision will survive termination or expiration of the Agreement for so long as Bank or any Subcustodian continues to possess or have access to personal information related to Customer. Notwithstanding the foregoing "personal information" shall not include information that is lawfully obtained from publicly available information, or from federal, state or local government records lawfully made available to the general public.

  • Privacy and Security (a) The Service Provider shall not transmit or store any AHS data outside the borders of Canada, nor transmit any AHS data in Canada to any party not specifically contemplated in this Agreement, without AHS’s prior written consent to each such data transmittal, which consent may be arbitrarily and unreasonably withheld.

  • PERSONAL INFORMATION PRIVACY AND SECURITY CONTRACT 11 Any reference to statutory, regulatory, or contractual language herein shall be to such language as in 12 effect or as amended.

  • Electronic and Information Resources Accessibility and Security Standards a. Applicability: The following Electronic and Information Resources (“EIR”) requirements apply to the Contract because the Grantee performs services that include EIR that the System Agency's employees are required or permitted to access or members of the public are required or permitted to access. This Section does not apply to incidental uses of EIR in the performance of the Agreement, unless the Parties agree that the EIR will become property of the State of Texas or will be used by HHSC’s clients or recipients after completion of the Agreement. Nothing in this section is intended to prescribe the use of particular designs or technologies or to prevent the use of alternative technologies, provided they result in substantially equivalent or greater access to and use of a Product.

  • Data Security and Privacy Plan As more fully described herein, throughout the term of the Master Agreement, Vendor will have a Data Security and Privacy Plan in place to protect the confidentiality, privacy and security of the Protected Data it receives from the District. Vendor’s Plan for protecting the District’s Protected Data includes, but is not limited to, its agreement to comply with the terms of the District’s Bill of Rights for Data Security and Privacy, a copy of which is set forth below and has been signed by the Vendor. Additional components of Vendor’s Data Security and Privacy Plan for protection of the District’s Protected Data throughout the term of the Master Agreement are as follows:

  • DATA HANDLING AND SECURITY It will always be the responsibility of the selected Contractor to manage data transfer and to secure all data appropriately during the project to prevent unauthorized access to all data, products, and deliverables.

  • Passwords and Security You acknowledge that you will be the only authorized user of Firstrade Securities Inc.'s Electronic Services for your account(s). You will be fully responsible for the confidentiality and use of your user name(s) and password (s) and you agree that you will be fully and solely responsible for all activities, including brokerage transactions, which arise from the use of your user name (s) or password(s) (except as provided for in paragraph 5 below). You also agree that you will be fully and solely responsible for all activities, including brokerage transactions, which arise from your authorization to link your brokerage account(s) to any other Firstrade Securities Inc. account(s). You acknowledge that we may tape record conversations with you, whether in person or by telephone, for purposes of verification and you consent to such recording.

  • Data and Security If Contractor is granted access to Court Data, Confidential Information or Court Work Locations in the performance of the Work;

  • Data Protection and Security A. In this Agreement the following terms shall have the meanings respectively ascribed to them:

Draft better contracts in just 5 minutes Get the weekly Law Insider newsletter packed with expert videos, webinars, ebooks, and more!