Information Security Categorization Sample Clauses

Information Security Categorization. In accordance with FIPS 199 and National Institute of Standards and Technology (NIST) Special Publication (SP) 800-60, Volume II: Appendices to Guide for Mapping Types of Information and Information Systems to Security Categories, Contractor Non-Disclosure Agreement and based on information provided by the ISSO, CISO, or other security representative, the risk level for each Security Objective and the Overall Risk Level, which is the highest watermark of the three factors (Confidentiality, Integrity, and Availability) of the information or information system are the following: Confidentiality: [ ] Low [ ] Moderate [ ] High Integrity: [ ] Low [ ] Moderate [ ] High Availability: [ ] Low [ ] Moderate [ ] High Overall Risk Level: [ ] Low [ ] Moderate [ ] High Based on information provided by the ISSO, Privacy Office, system/data owner, or other security or privacy representative, it has been determined that this solicitation/contract involves: PII Confidentiality Impact Level has been determined to be: [ ] Low [ ] Moderate [ ] High
AutoNDA by SimpleDocs
Information Security Categorization. In accordance with FIPS 199 and National Institute of Standards and Technology (NIST) Special Publication (SP) 800-60, Volume II: Appendices to Guide for Mapping Types of Information and Information Systems to Security Categories, Appendix C, and based on information provided by the ISSO or other security representative, the risk level for each Security Objective and the Overall Risk Level, which is the highest watermark of the three factors (Confidentiality, Integrity, and Availability) of the information or information system are the following: Confidentiality: [ ] Low [ X ] Moderate [ ] High Integrity: [ ] Low [ X ] Moderate [ ] High Availability: [ ] Low [ X ] Moderate [ ] High Based on information provided by the Privacy Office, system/data owner, or other privacy representative, it has been determined that this solicitation/contract involves: [ X ] No PII [ ] Yes PII

Related to Information Security Categorization

  • Information Security IET information security management practices, policies and regulatory compliance requirements are aimed at assuring the confidentiality, integrity and availability of Customer information. The UC Xxxxx Cyber-safety Policy, UC Xxxxx Security Standards Policy (PPM Section 310-22), is adopted by the campus and IET to define the responsibilities and key practices for assuring the security of UC Xxxxx computing systems and electronic data.

  • Information Regarding Collateral (a) Level 3 and the Borrower will furnish to the Collateral Agent prompt written notice of any change (i) in any Loan Party’s corporate name or in any trade name used to identify it in the conduct of its business or in the ownership of its properties, (ii) in any Loan Party’s identity or corporate structure or (iii) in any Loan Party’s Federal Taxpayer Identification Number. Each of Level 3 and the Borrower agrees not to effect or permit any change referred to in the preceding sentence unless all filings (or arrangements therefor satisfactory to the Collateral Agent) have been made under the Uniform Commercial Code or otherwise that are required in order for the Collateral Agent to continue at all times following such change to have a valid, legal and perfected security interest in all the Collateral. Each of Level 3 and the Borrower also agrees promptly to notify the Collateral Agent if any material portion of the Collateral is damaged or destroyed. (b) Each year, at the time of delivery of the certificate pursuant to paragraph (c) of Section 5.01, Level 3 shall deliver to the Collateral Agent certificates of an authorized officer of Level 3 (i) setting forth the information required pursuant to (A) the Annual Perfection Certificate and (B) until such time as the Collateral Permit Condition is satisfied with respect to Level 3 LLC, the Annual Loan Proceeds Note Perfection Certificate, or confirming that there has been no change in such information since the dates of the Effective Date Perfection Certificate or the Effective Date Loan Proceeds Note Perfection Certificate, as the case may be, or the date of the most recent certificates delivered pursuant to this Section and (ii) certifying that all Uniform Commercial Code financing statements (excluding fixture filings) or other appropriate filings, recordings or registrations, including all refilings, rerecordings and reregistrations, containing a description of the Collateral required to be set forth therein have been filed of record in each United States governmental, municipal or other appropriate office in each jurisdiction identified pursuant to clause (i) above to the extent necessary to perfect and continue the perfection of the security interests under the applicable Security Documents for a period of not less than 18 months after the date of such certificate (except as noted therein with respect to any continuation statements to be filed within such period).

  • Information Security Program (1) DTI shall implement and maintain a comprehensive written information security program applicable to the Personal Information ("Information Security Program") which shall include commercially reasonable measures, including, as appropriate, policies and procedures and technical, physical, and administrative safeguards that are consistent with industry standards, providing for (i) the security and confidentiality of the Personal Information, (ii) protection of the Personal Information against reasonably foreseeable threats or hazards to the security or integrity of the Personal Information, (iii) protection against unauthorized access to or use of or loss or theft of the Personal Information, and (iv) appropriate disposal of the Personal Information. Without limiting the generality of the foregoing, the Information Security Program shall provide for (i) continual assessment and re-assessment of the risks to the security of Personal Information acquired or maintained by DTI and its agents, contractors and subcontractors in connection with the Services, including but not limited to (A) identification of internal and external threats that could result in unauthorized disclosure, alteration or destruction of Personal Information and systems used by DTI and its agents, contractors and subcontractors, (B) assessment of the likelihood and potential damage of such threats, taking into account the sensitivity of such Personal Information, and (C) assessment of the sufficiency of policies, procedures, information systems of DTI and its agents, contractors and subcontractors, and other arrangements in place, to control risks; and (ii) appropriate protection against such risks. (2) The Information Security Program shall require encryption of any Personal Information in electronic format while in transit or in storage, and enhanced controls and standards for transport and disposal of physical media containing Personal Information. DTI shall, and shall require its agents, contractors and subcontractors who access or use Personal Information or Confidential Information to, regularly test key controls, systems and procedures relating to the Information Security Program ("ISP Tests"). DTI shall advise the Funds of any material issues identified in the ISP Tests potentially affecting the Information Security Program. (3) DTI shall comply with its Information Security Program.

  • SERVICE MONITORING, ANALYSES AND ORACLE SOFTWARE 11.1 We continuously monitor the Services to facilitate Oracle’s operation of the Services; to help resolve Your service requests; to detect and address threats to the functionality, security, integrity, and availability of the Services as well as any content, data, or applications in the Services; and to detect and address illegal acts or violations of the Acceptable Use Policy. Oracle monitoring tools do not collect or store any of Your Content residing in the Services, except as needed for such purposes. Oracle does not monitor, and does not address issues with, non-Oracle software provided by You or any of Your Users that is stored in, or run on or through, the Services. Information collected by Oracle monitoring tools (excluding Your Content) may also be used to assist in managing Oracle’s product and service portfolio, to help Oracle address deficiencies in its product and service offerings, and for license management purposes. 11.2 We may (i) compile statistical and other information related to the performance, operation and use of the Services, and (ii) use data from the Services in aggregated form for security and operations management, to create statistical analyses, and for research and development purposes (clauses i and ii are collectively referred to as “Service Analyses”). We may make Service Analyses publicly available; however, Service Analyses will not incorporate Your Content, Personal Data or Confidential Information in a form that could serve to identify You or any individual. We retain all intellectual property rights in Service Analyses. 11.3 We may provide You with the ability to obtain certain Oracle Software (as defined below) for use with the Services. If we provide Oracle Software to You and do not specify separate terms for such software, then such Oracle Software is provided as part of the Services and You have the non-exclusive, worldwide, limited right to use such Oracle Software, subject to the terms of this Agreement and Your order (except for separately licensed elements of the Oracle Software, which separately licensed elements are governed by the applicable separate terms), solely to facilitate Your use of the Services. You may allow Your Users to use the Oracle Software for this purpose, and You are responsible for their compliance with the license terms. Your right to use any Oracle Software will terminate upon the earlier of our notice (by web posting or otherwise) or the end of the Services associated with the Oracle Software. Notwithstanding the foregoing, if Oracle Software is licensed to You under separate terms, then Your use of such software is governed by the separate terms. Your right to use any part of the Oracle Software that is licensed under the separate terms is not restricted in any way by this Agreement.

  • Basic Financial Information The Company shall furnish the following reports to each Purchaser (or any transferee of any Securities), so long as the Purchaser is a holder of any Securities: (a) within 30 days after the end of each of the 12 monthly accounting periods in each fiscal year (or when furnished to the Company's Board of Directors, if earlier), unaudited consolidated statements of income and retained earnings and cash flows of the Company and its Subsidiaries for each monthly period and for the period from the beginning of such fiscal year to the end of such monthly period, together with consolidated balance sheets of the Company and its Subsidiaries as at the end of each monthly period, setting forth in each case comparisons to budget and to corresponding periods in the preceding fiscal year, which statements will be prepared in accordance with US GAAP consistently applied, and will fairly present the consolidated financial position of the Company and its Subsidiaries as of the dates thereof and their consolidated results of operations for such periods; (b) within 90 days after the end of each fiscal year (or within five days after being filed with the Commission, if sooner), consolidated statements of income and retained earnings and cash flows of the Company and its Subsidiaries for the period from the beginning of each fiscal year to the end of such fiscal year, and consolidated balance sheets as at the end of such fiscal year, setting forth in each case in comparative form corresponding figures for the preceding fiscal year, which statements will be prepared in accordance with US GAAP, consistently applied, and will fairly present the consolidated financial position of the Company and its Subsidiaries as of the dates thereof and their consolidated results of operations for such periods, and will be accompanied by: (i) a report of the Company's independent certified public accounting firm; (ii) a report from such accounting firm addressed to the Purchasers, stating that in making the audit necessary to express their opinion on the financial statements, nothing has come to their attention which would lead them to believe that an Event of Default has occurred with respect to this Agreement or the Debentures or, if such accountants have reason to believe that any such Event of Default has occurred, a letter specifying the nature thereof; and (iii) the management letter of such accounting firm; (c) within 45 days after the end of each quarterly accounting period in each fiscal year (or within five days after being filed with the Commission, if sooner) consolidated statements of income and retained earnings and cash flows of the Company and its Subsidiaries for such quarterly accounting period and for the period from the beginning of each fiscal year to the end of such quarterly accounting period and consolidated balance sheets as at the end of such quarterly accounting period, setting forth in each case in comparative form corresponding figures for the preceding quarterly accounting period, which statements will be prepared in accordance with US GAAP, consistently applied, and will fairly represent the consolidated financial position of the Company and its Subsidiaries as of the dates thereof and their consolidated results of operations for such periods; (d) within 45 days after the end of each quarterly accounting period in each fiscal year, a certificate of the Chief Financial Officer of the Company stating that the Company is in compliance with the terms of this Agreement and any other material contract or commitment to which the Company or any of its Subsidiaries is a party or by which any of them is bound, or if the Company or any of its Subsidiaries is not in compliance, specifying the nature and period of noncompliance, and what actions the Company or such Subsidiary has taken and proposes to take with respect thereto. Notwithstanding the foregoing, the certificate delivered at the end of each fiscal year of the Company shall be signed by both the Chief Executive Officer and the Chief Financial Officer of the Company and shall be delivered within 90 days after the end of the fiscal year; (e) promptly upon receipt thereof, but in no event later than three business days, any additional reports or other detailed information concerning significant aspects of the operations and condition, financial or otherwise, of the Company and its Subsidiaries, given to the Company by its independent accountants; (f) at least 30 days prior to the end of each fiscal year, a detailed annual operating budget and business plan for the Company and its Subsidiaries for the succeeding twelve-month period. Such budgets shall be prepared on a monthly basis, displaying consolidated statements of anticipated income and retained earnings, consolidated statements of anticipated cash flow and projected consolidated balance sheets, setting forth in each case the assumptions (which assumptions and projections shall represent and be based upon the good faith judgment in respect thereof of the Chief Executive Officer of the Company) behind the projections contained in such financial statements, and which budgets shall have been approved by the Board of Directors of the Company prior to the beginning of each twelve-month period for which such budget shall have been prepared and, promptly upon preparation thereof, any other budgets that the Company may prepare and any revisions of such annual or other budgets; (g) within ten days after transmission or receipt thereof, copies of all financial statements, proxy statements and reports which the Company sends to its stockholders or directors, and copies of all registration statements and all regular, special or periodic reports which it or any of its officers or directors files with the Commission, the American Stock Exchange (the "AMEX"), the National Association of Securities Dealers Automated Quotation System ("NASDAQ") or with any other securities exchange or over-the-counter market on which any of the securities of the Company are then listed or approved for trading, copies of all press releases and other statements made generally available by the Company to the public concerning material developments in the business of the Company and its Subsidiaries and copies of material communications sent to or received from stockholders, directors or committees of the Board of Directors of the Company or any of its Subsidiaries and copies of all material communications sent to and received from any lender to the Company; and (h) with reasonable promptness such other information and financial data concerning the Company as any Person entitled to receive materials under this Section 9.2 may reasonably request. Notwithstanding the foregoing, all confidential information furnished at any time by or on behalf of the Company or its Subsidiaries to any Purchaser (or any transferee of any Securities) shall be subject to the provisions of Section 19.13.

  • Electronic and Information Resources Accessibility and Security Standards a. Applicability: The following Electronic and Information Resources (“EIR”) requirements apply to the Contract because the Grantee performs services that include EIR that the System Agency's employees are required or permitted to access or members of the public are required or permitted to access. This Section does not apply to incidental uses of EIR in the performance of the Agreement, unless the Parties agree that the EIR will become property of the State of Texas or will be used by HHSC’s clients or recipients after completion of the Agreement. Nothing in this section is intended to prescribe the use of particular designs or technologies or to prevent the use of alternative technologies, provided they result in substantially equivalent or greater access to and use of a Product.

  • CERTIFICATION REGARDING CERTAIN FOREIGN-OWNED COMPANIES IN CONNECTION WITH CRITICAL INFRASTRUCTURE (Texas law as of September 1, 2021) By submitting a proposal to this Solicitation, you certify that you agree to the following required by Texas law as of September 1, 2021: Proposing Company is prohibited from entering into a contract or other agreement relating to critical infrastructure that would grant to the company direct or remote access to or control of critical infrastructure in this state, excluding access specifically allowed by the Proposing Company for product warranty and support purposes. Company, certifies that neither it nor its parent company nor any affiliate of company or its parent company, is (1) owned by or the majority of stock or other ownership interest of the company is held or controlled by individuals who are citizens of China, Iran, North Korea, Russia, or a designated country; (2) a company or other entity, including governmental entity, that is owned or controlled by citizens of or is directly controlled by the government of China, Iran, North Korea, Russia, or a designated country; or (3) headquartered in China, Iran, North Korea, Russia, or a designated country. For purposes of this contract, “critical infrastructure” means “a communication infrastructure system, cybersecurity system, electric grid, hazardous waste treatment system, or water treatment facility.” See Tex. Gov’t Code § 2274.0101(2) of SB 1226 (87th leg.). The company verifies and certifies that company will not grant direct or remote access to or control of critical infrastructure, except for product warranty and support purposes, to prohibited individuals, companies, or entities, including governmental entities, owned, controlled, or headquartered in China, Iran, North Korea, Russia, or a designated country, as determined by the Governor.

  • Certified and Minority Business Enterprises Reports Upon Customer request, the Contractor shall report to the requesting Customer the Contractor’s spend with certified and other minority business enterprises in the provision of commodities or services related to the Customer’s orders. These reports shall include the period covered, the name, minority code, and Federal Employer Identification Number of each minority business utilized during the period; commodities and services provided by the minority business enterprise, and the amount paid to each minority business enterprise on behalf of the Customer.

  • How Do I Get More Information? This Notice summarizes the Action, the terms of the Settlements, and your rights and options in connection with the Settlements. More details are in the Settlement Agreements, which are available for your review at xxx.XxxxxxxxxXxxXxxxxxxxxXxxxxxxxxx.xxx. The Settlement Website also has the Second Amended Complaint and other documents relating to the Settlements. You may also call toll-free 0-000-000-0000 or write the Claims Administrator at: Financial Aid Antitrust Settlements, c/o Claims Administrator, 0000 Xxxx Xxxxxx, Xxxxx 0000, Xxxxxxxxxxxx, XX 00000. To: Settlement Class Member Email Address From: Claims Administrator Subject: Notice of Proposed Class Action Settlement – Xxxxx, et al. x. Xxxxx University, et al. Please visit xxx.XxxxxxxxxXxxXxxxxxxxxXxxxxxxxxx.xxx for more information. • The Court has preliminarily approved proposed settlements (“Settlements”) with the following ten schools: Brown University, the University of Chicago, the Trustees of Columbia University in the City of New York, Trustees of Dartmouth College, Duke University, Emory University, Northwestern University, Xxxxxxx Xxxxx Xxxx University, Vanderbilt University, and Yale University (collectively the “Settling Universities”). • The Court has also preliminarily approved a class of students who attended one or more of the Settling Universities during certain time periods. This is referred to as the “Settlement Class,” which is defined in more detail below.

  • Information Sources The Custodian may rely upon information received from issuers of Investments or agents of such issuers, information received from Subcustodians and from other commercially reasonable sources such as commercial data bases and the like, but shall not be responsible for specific inaccuracies in such information, provided that the Custodian has relied upon such information in good faith, or for the failure of any commercially reasonable information provider.

Draft better contracts in just 5 minutes Get the weekly Law Insider newsletter packed with expert videos, webinars, ebooks, and more!