Information Security Audit Sample Clauses

Information Security Audit. BNY Mellon shall conduct penetration testing (including through a reputable third party recognized by the information security industry), at least once every rolling 12-month period, to review and assess the adequacy of BNY Mellon’s information security measures, and BNY Mellon shall, at Voya’s request, provide Voya with evidence that such testing has been performed.
AutoNDA by SimpleDocs
Information Security Audit. Cognizant Group agrees that, subject to the provisions set forth in Section 12.06, an NAIC Auditor may from time-to-time conduct penetration testing and on-site inspections to review and assess the adequacy of Cognizant Group’s information security measures and Cognizant Group shall, at no additional cost or expense to NAIC Group, promptly remedy all deficiencies found as a result of such assessment.
Information Security Audit. Upon prior written notice and at a mutually acceptable time, Client or Client representatives (e.g., external audit consultants or regulators) may audit, test and/or inspect the Accenture’s Data Protection Procedures and the Accenture’s facilities to assure Client Confidential Information is adequately protected. This information security audit is in addition to other audit rights granted herein. The Parties will mutually agree upon the scope of such audits, tests or inspections, which may extend to Accenture subcontractor and Pre-Approved Subcontractors listed in the applicable SOW locations and other Accenture resources (other systems, environmental support, recovery processes, data centers, backup locations, call centers etc.) used to support the systems and handling of Confidential Information, provided that Client shall not be provided access to the data of any other Accenture client or to personal data of Accenture Personnel. Accenture shall inform Client of any internal auditing capability it possesses and permit Client to consult on a confidential basis with such auditors at all reasonable times. Accenture shall promptly take action at its expense to correct all issues identified by an information security audit that, Client, in its reasonable discretion, identifies as requiring correction.
Information Security Audit. Notwithstanding the foregoing, Supplier agrees that, subject to the provisions set forth in Section 12.04, a Voya Auditor may from time-to-time conduct on-site inspections to review and assess the adequacy of Supplier's information security measures and Supplier shall, at no additional cost or expense to Voya Group, promptly remedy all deficiencies found as a result of such assessment.
Information Security Audit. (a) TSYS will use commercially reasonable security measures to safeguard its computer systems and physical facilities against (i) the unauthorized destruction, loss, alteration of, or access to COMPANY’s Confidential Information, whether such information is at or on TSYS’ systems or facilities or in transit; and (ii) interruption or disruption of the Services being provided hereunder to COMPANY. TSYS reserves the right to make changes in its security infrastructure and procedures from time to time, so long as TSYS maintains compliance with applicable Laws and Regulations as defined in Section 10.3 of this Agreement. (b) Annually, during the term of this Agreement, TSYS shall have a nationally-recognized accounting firm conduct an audit in accordance with the Statement on Standards for Attestation Engagements No. 16 (“SSAE 16”) developed by the American Institute of Certified Public Accountants, and have such accounting firm issue a Service Auditor’s Type II Report (or substantially similar report in the event the SSAE 16 auditing standard and/or a Service Auditors Type II Report are no longer an industry standard) which shall cover, at a minimum, security policies and procedures and controls, including without limitation, system security and physical security. No more than once annually, TSYS shall provide COMPANY with a copy of the SSAE 16 promptly upon request by COMPANY. (c) If the SSAE 16 in its final and issued version contains a qualified opinion relating to security matters, including without limitation, risks to TSYS’ computer systems and physical facilities which could result in the unauthorized destruction, loss, alteration of, or access to COMPANY’s Confidential Information or the Services being provided to COMPANY hereunder being materially affected, then a senior technology executive of TSYS shall promptly meet with a representative of COMPANY to discuss the matter and TSYS shall promptly take action to address the matter raised by the qualification so that the cause of the qualified opinion may be resolved and take such other steps, after consultation with COMPANY to reduce the risk to COMPANY’ s Confidential Information. (d) If, at any time during the Term, COMPANY has reasonable material concerns regarding TSYS’ operational controls, data security, and/or financial stability, and such concerns are not addressed in the SSAE 16 Audit and in TSYS’ response to any opinion therein to COMPANY’s reasonable satisfaction, COMPANY shall so notify TSY...
Information Security Audit. In addition to the audit rights granted in clause 13 above, NTT (and its representatives) will have the right to audit Supplier’s premises and information security program, upon reasonable advance notice, in order to confirm Supplier’s compliance with the terms set out in this Part 3.
Information Security Audit 
AutoNDA by SimpleDocs

Related to Information Security Audit

  • Information Security IET information security management practices, policies and regulatory compliance requirements are aimed at assuring the confidentiality, integrity and availability of Customer information. The UC Xxxxx Cyber-safety Policy, UC Xxxxx Security Standards Policy (PPM Section 310-22), is adopted by the campus and IET to define the responsibilities and key practices for assuring the security of UC Xxxxx computing systems and electronic data.

  • Information Security Program (1) DTI shall implement and maintain a comprehensive written information security program applicable to the Personal Information ("Information Security Program") which shall include commercially reasonable measures, including, as appropriate, policies and procedures and technical, physical, and administrative safeguards that are consistent with industry standards, providing for (i) the security and confidentiality of the Personal Information, (ii) protection of the Personal Information against reasonably foreseeable threats or hazards to the security or integrity of the Personal Information, (iii) protection against unauthorized access to or use of or loss or theft of the Personal Information, and (iv) appropriate disposal of the Personal Information. Without limiting the generality of the foregoing, the Information Security Program shall provide for (i) continual assessment and re-assessment of the risks to the security of Personal Information acquired or maintained by DTI and its agents, contractors and subcontractors in connection with the Services, including but not limited to (A) identification of internal and external threats that could result in unauthorized disclosure, alteration or destruction of Personal Information and systems used by DTI and its agents, contractors and subcontractors, (B) assessment of the likelihood and potential damage of such threats, taking into account the sensitivity of such Personal Information, and (C) assessment of the sufficiency of policies, procedures, information systems of DTI and its agents, contractors and subcontractors, and other arrangements in place, to control risks; and (ii) appropriate protection against such risks. (2) The Information Security Program shall require encryption of any Personal Information in electronic format while in transit or in storage, and enhanced controls and standards for transport and disposal of physical media containing Personal Information. DTI shall, and shall require its agents, contractors and subcontractors who access or use Personal Information or Confidential Information to, regularly test key controls, systems and procedures relating to the Information Security Program ("ISP Tests"). DTI shall advise the Funds of any material issues identified in the ISP Tests potentially affecting the Information Security Program. (3) DTI shall comply with its Information Security Program.

  • Security Audit Customer agrees that PROS’ Audit Report will be used to satisfy any audit or inspection requests by or on behalf of Customer, and PROS will make Audit Reports available to Customer upon request. PROS will promptly remediate any material weaknesses or significant control deficiencies identified in any Audit Reports. In the event that an audit opinion is qualified and the qualification has not been remediated by the date of the Audit Report, PROS shall (i) provide Customer with PROS remediation plan; and (ii) execute such plan in accordance with its terms.

  • Security Audits Each Contract Year, County may perform or have performed security reviews and testing based on an IT infrastructure review plan. Such testing shall ensure all pertinent County security standards as well as any customer agency requirements, such as federal tax requirements or HIPPA.

  • Personal Information security breach Supplier/Service Provider’s Obligations a) The Supplier/Service Provider shall notify the Information Officer of Transnet, in writing as soon as possible after it becomes aware of or suspects any loss, unauthorised access or unlawful use of any personal data and shall, at its own cost, take all necessary remedial steps to mitigate the extent of the loss or compromise of personal data and to restore the integrity of the affected Goods/Services as quickly as is possible. The Supplier/Service Provider shall also be required to provide Transnet with details of the persons affected by the compromise and the nature and extent of the compromise, including details of the identity of the unauthorised person who may have accessed or acquired the personal data. b) The Supplier/Service Provider shall provide on-going updates on its progress in resolving the compromise at reasonable intervals until such time as the compromise is resolved. c) Where required, the Supplier/Service Provider may be required to notify the South African Police Service; and/or the State Security Agency and where applicable, the relevant regulator and/or the affected persons of the security breach. Any such notification shall always include sufficient information to allow the persons to take protective measures against the potential consequences of the compromise. d) The Supplier/Service Provider undertakes to co‑operate in any investigation relating to security which is carried out by or on behalf of Transnet including providing any information or material in its possession or control and implementing new security measures.

  • Information Regarding Collateral (a) Level 3 and the Borrower will furnish to the Collateral Agent prompt written notice of any change (i) in any Loan Party’s corporate name or in any trade name used to identify it in the conduct of its business or in the ownership of its properties, (ii) in any Loan Party’s identity or corporate structure or (iii) in any Loan Party’s Federal Taxpayer Identification Number. Each of Level 3 and the Borrower agrees not to effect or permit any change referred to in the preceding sentence unless all filings (or arrangements therefor satisfactory to the Collateral Agent) have been made under the Uniform Commercial Code or otherwise that are required in order for the Collateral Agent to continue at all times following such change to have a valid, legal and perfected security interest in all the Collateral. Each of Level 3 and the Borrower also agrees promptly to notify the Collateral Agent if any material portion of the Collateral is damaged or destroyed. (b) Each year, at the time of delivery of the certificate pursuant to paragraph (c) of Section 5.01, Level 3 shall deliver to the Collateral Agent certificates of an authorized officer of Level 3 (i) setting forth the information required pursuant to (A) the Annual Perfection Certificate and (B) until such time as the Collateral Permit Condition is satisfied with respect to Level 3 LLC, the Annual Loan Proceeds Note Perfection Certificate, or confirming that there has been no change in such information since the dates of the Effective Date Perfection Certificate or the Effective Date Loan Proceeds Note Perfection Certificate, as the case may be, or the date of the most recent certificates delivered pursuant to this Section and (ii) certifying that all Uniform Commercial Code financing statements (excluding fixture filings) or other appropriate filings, recordings or registrations, including all refilings, rerecordings and reregistrations, containing a description of the Collateral required to be set forth therein have been filed of record in each United States governmental, municipal or other appropriate office in each jurisdiction identified pursuant to clause (i) above to the extent necessary to perfect and continue the perfection of the security interests under the applicable Security Documents for a period of not less than 18 months after the date of such certificate (except as noted therein with respect to any continuation statements to be filed within such period).

  • Examination of Mortgage Loan Files and Due Diligence Review The Mortgage Loan Seller shall reasonably cooperate with any examination of the Mortgage Files for, and any other documents and records relating to, the Mortgage Loans, that may be undertaken by or on behalf of the Purchaser on or before the Closing Date. The fact that the Purchaser has conducted or has failed to conduct any partial or complete examination of any of the Mortgage Files for, and/or any of such other documents and records relating to, the Mortgage Loans, shall not affect the Purchaser’s right to pursue any remedy available in equity or at law for a breach of the Mortgage Loan Seller’s representations and warranties made pursuant to Section 4, except as expressly set forth in Section 5.

  • Background and Security Investigations 7.5.1 Each of Contractor’s staff performing services under this Contract, who is in a designated sensitive position, as determined by County in County's sole discretion, shall undergo and pass a background investigation to the satisfaction of County as a condition of beginning and continuing to perform services under this Contract. Such background investigation must be obtained through fingerprints submitted to the California Department of Justice to include State, local, and federal-level review, which may include, but shall not be limited to, criminal conviction information. The fees associated with the background investigation shall be at the expense of the Contractor, regardless of whether the member of Contractor’s staff passes or fails the background investigation. If a member of Contractor’s staff does not pass the background investigation, County may request that the member of Contractor’s staff be removed immediately from performing services under the Contract. Contractor shall comply with County’s request at any time during the term of the Contract. County will not provide to Contractor or to Contractor’s staff any information obtained through the County’s background investigation. 7.5.2 County, in its sole discretion, may immediately deny or terminate facility access to any member of Contractor’s staff that does not pass such investigation to the satisfaction of the County or whose background or conduct is incompatible with County facility access. 7.5.3 Disqualification of any member of Contractor’s staff pursuant to this Paragraph 7.5 shall not relieve Contractor of its obligation to complete all work in accordance with the terms and conditions of this Contract.

  • Security Assessment If Accenture reasonably determines, or in good faith believes, that Supplier’s security practices or procedures do not meet Supplier’s obligations under the Agreement, then Accenture will notify Supplier of the deficiencies. Supplier will without unreasonable delay: (i) correct such deficiencies at its own expense; (ii) permit Accenture, or its duly authorized representatives, to assess Supplier’s security-related activities that are relevant to the Agreement; and (iii) timely complete a security questionnaire from Accenture on a periodic basis upon Accenture’s request. Security issues identified by Accenture will be assigned risk ratings and an agreed-to timeframe to remediate. Supplier will remediate all the security issues identified within the agreed to timeframes. Upon Supplier’s failure to remediate any high or medium rated security issues within the stated timeframes, Accenture may terminate the Agreement in accordance with Section 8 above.

  • EXAMINATION OF MORTGAGE FILES AND DUE DILIGENCE REVIEW 3.1 Seller shall (i) deliver to Purchaser on or before the Closing Date a diskette acceptable to Purchaser that contains such information about the Mortgage Loans as may be reasonably requested by Purchaser, (ii) deliver to Purchaser on or before the Closing Date investor files (collectively the “Collateral Information”) with respect to the Mortgage Loans proposed to be included in the Issuing Entity and made available at Purchaser’s headquarters in New York, and (iii) otherwise cooperate fully with Purchaser in its examination of the credit files, underwriting documentation and Mortgage Files for the Mortgage Loans and its due diligence review of the Mortgage Loans. The fact that Purchaser has conducted or has failed to conduct any partial or complete examination of the credit files, underwriting documentation or Mortgage Files for the Mortgage Loans shall not affect the right of Purchaser or the Trustee to cause Seller to cure any Material Defect, or to repurchase or replace the defective Mortgage Loans pursuant to Section 5 hereof. 3.2 On or prior to the Closing Date, Seller shall allow representatives of Purchaser and any designees thereof to examine and audit all books, records and files pertaining to the Mortgage Loans, Seller’s underwriting procedures and Seller’s ability to perform or observe all of the terms, covenants and conditions of this Agreement. Such examinations and audits shall take place upon reasonable prior advance notice at one or more offices of Seller during normal business hours and shall not be conducted in a manner that is disruptive to Seller’s normal business operations. In the course of such examinations and audits, Seller will make available to such representatives of Purchaser and any designees thereof reasonably adequate facilities, as well as the assistance of a sufficient number of knowledgeable and responsible individuals who are familiar with the Mortgage Loans and the terms of this Agreement, and Seller shall cooperate fully with any such examination and audit in all material respects. On or prior to the Closing Date, Seller shall provide Purchaser with all material information regarding Seller’s financial condition and access to knowledgeable financial or accounting officers for the purpose of answering questions with respect to Seller’s financial condition, financial statements as provided to Purchaser or other developments affecting Seller’s ability to consummate the transactions contemplated hereby or otherwise affecting Seller in any material respect. Within forty-five (45) days after the Closing Date, Seller shall provide the Master Servicer with any additional information identified by the Master Servicer as necessary to complete the CREFC® Property File, to the extent that such information is available to Seller. 3.3 Purchaser may exercise any of its rights hereunder through one or more designees or agents, provided Purchaser has provided Seller with prior notice of the identity of such designee or agent. 3.4 Purchaser shall keep confidential any information regarding Seller and, to the extent required pursuant to the terms of the Pooling and Servicing Agreement, the Mortgage Loans that has been delivered into Purchaser’s possession and that is not otherwise publicly available; provided, that such information shall not be kept confidential (and the right to require confidentiality under any confidentiality agreement is hereby waived) to the extent Purchaser deems such information necessary and appropriate or required to be included in the Preliminary Memorandum, the Final Memorandum, the Preliminary Prospectus, the Prospectus (as defined in the Pooling and Servicing Agreement) or any other disclosure document relating to the Certificates or Purchaser is required by law or court order to disclose such information. If Purchaser is required or otherwise deems it necessary and appropriate to disclose in the Preliminary Prospectus, the Preliminary Memorandum, the Final Memorandum, the Prospectus or any other disclosure document relating to the Certificates confidential information regarding Seller as described in the preceding sentence, Purchaser shall provide to Seller a copy of the proposed form of such disclosure prior to making such disclosure and Seller shall promptly, and in any event within two (2) Business Days, notify Purchaser of any inaccuracies therein, in which case Purchaser shall modify such form in a manner that corrects such inaccuracies. If Purchaser is required by law or court order to disclose confidential information regarding Seller as described in the second preceding sentence, Purchaser shall notify Seller and cooperate in Seller’s efforts to obtain a protective order or other reasonable assurance that confidential treatment will be accorded such information and, if in the absence of a protective order or such assurance, Purchaser is compelled as a matter of law to disclose such information, Purchaser shall, prior to making such disclosure, advise and consult with Seller and its counsel as to such disclosure and the nature and wording of such disclosure and Purchaser shall use reasonable efforts to obtain confidential treatment therefor. Notwithstanding the foregoing, if reasonably advised by counsel that Purchaser is required by a regulatory agency or court order to make such disclosure immediately, then Purchaser shall be permitted to make such disclosure without prior review by Seller and shall give Seller prompt notice of such disclosure.

Draft better contracts in just 5 minutes Get the weekly Law Insider newsletter packed with expert videos, webinars, ebooks, and more!