Vulnerability management service Sample Clauses

Vulnerability management service. 6.6.1.1 Scope 1721 The vulnerability management service shall cover the entire IT service portfolio for the FWC. 1722 The following tasks shall be performed in the scope of this service: 1723  Vulnerability monitoring (proactive security monitoring) 1724 o Continuous monitoring of different security sources of vulnerability information to 1725 identify new published software vulnerabilities. Also, active monitoring of new 1726 information5 related to older vulnerabilities which are still open (=not yet 1727 remediated). 1728 o Regular (at least quarterly) vulnerability checks, e.g. by performing vulnerability 1729 and network scans, for all the systems belong to IT service portfolio, including 1730 managed networks. Missing security patches, misconfiguration and obsolete 1731 technologies shall belong to the scope of the checks. 1732  Vulnerability analysis. All the vulnerabilities shall be analysed without delay. ECHA 1733 specific criticality and urgency of the remediation actions shall be assessed by 1734 contextualising the vulnerability in ECHA environment and by taking into account (other) 1735 security measures and compensating factors in place. The criticality and urgency 1736 assessment shall be updated if further information is disclosed 1737  A proposal for remediation actions (e.g. remediated as a part of the standard regular 1738 patching or by initiating an emergency patching, a configuration change as a standard or 1739 emergency change etc.) shall be prepared and clearly communicated to ECHA. In case 5 for example if an exploit to abuse the vulnerability is published or if there is a new malware widely spreading via this hole 1740 that a primary remediation action is not yet available or cannot be applied to a critical 1741 vulnerability (e.g. if a patch is not yet available), possible temporary mitigation actions 1742 shall be assessed and proposed 1743  Follow-up and metrics. The Contractor shall follow up the remediation actions and 1744 maintain a list of the open vulnerabilities. The Contractor shall adopt metrics on 1745 vulnerability management (e.g. number of open vulnerabilities or mitigation time for the 1746 critical vulnerabilities). Whenever the metrics reveal systematic issues, a root cause 1747 assessment shall be carried out according to the model for Problem Management defined 1748 in ITIL. 1749 6.6.1.2 Objectives 1750 The main objective of the service is to detect and remediate vulnerabilities that exist in the 1751 se...
AutoNDA by SimpleDocs

Related to Vulnerability management service

  • Vulnerability Management BNY Mellon will maintain a documented process to identify and remediate security vulnerabilities affecting its systems used to provide the services. BNY Mellon will classify security vulnerabilities using industry recognized standards and conduct continuous monitoring and testing of its networks, hardware and software including regular penetration testing and ethical hack assessments. BNY Mellon will remediate identified security vulnerabilities in accordance with its process.

  • Construction Management Services a. A-E may be required to review and recommend approval of submittals, shop drawings, Request for Information (RFI) and/or calculations for temporary structures such as trench shoring, false work and other temporary structural forms. b. A-E may be required to review and advise the County Representative on the overall project schedule, including staging and completion dates, duration, milestones, and interfaces. Immediately notify Representative if the proposed work schedule does not conform to the contract documents, including the plans, specifications, and permits or that may require special inspection or testing, or work stoppage. c. Review on a monthly basis the project schedule and/or Critical Path Method (CPM) schedule submitted by the Construction Contractor. Make recommendations concerning the Construction Contractor’s adherence thereto. Recommend possible solutions to scheduling problems so as to complete the project on time, within budget, and in accordance with the contract drawings and specifications. d. Review scope of work and identify potential contract change orders. Prepare independent cost estimates for any changes resulting from design revisions or change in field conditions. Prepare and recommend for approval all contract change orders. e. Evaluate the merit of any potential claims or requests for equitable adjustment submitted by the Construction Contractor. Prepare analysis of potential claims include recommendations regarding settlement of the claims. f. Assist County staff in project related issues with other Agencies, or departments, engineering and material testing support firms, CEQA consultants, utilities agencies, etc. g. Assist in community outreach meetings and media relations h. Review for acceptance/approval of Storm Water Pollution Prevention Plan (SWPPP) in accordance with the general Permit of Discharges of Storm Water Associated with Construction Activity (Construction General Permit, including dewatering/diversion plans per the State’s DeMinimus Permit).

  • Virus Management DST shall maintain a malware protection program designed to deter malware infections, detect the presence of malware within DST environment.

  • Security Management The Contractor shall comply with the requirements of the DOD 5200.1-M and the DD Form 254. Security of the Contractor’s electronic media shall be in accordance with the above documents. Effective Program Security shall require the Contractor to address Information Security and Operations Security enabled by the Security Classification Guides. The Contractor’s facility must be able to handle and store material up to the Classification Level as referenced in Attachment J-01, DD Form 254.

  • Outpatient Services Physicians, Urgent Care Centers and other Outpatient Providers located outside the BlueCard® service area will typically require You to pay in full at the time of service. You must submit a Claim to obtain reimbursement for Covered Services.

  • Investment Management Services (a) The Manager shall manage the Fund’s assets subject to and in accordance with the investment objectives and policies of the Fund and any directions which the Trust’s Board of Trustees may issue from time to time. In pursuance of the foregoing, the Manager shall make all determinations with respect to the investment of the Fund’s assets and the purchase and sale of its investment securities, and shall take such steps as may be necessary to implement the same. Such determinations and services shall include determining the manner in which any voting rights, rights to consent to corporate action and any other rights pertaining to the Fund’s investment securities shall be exercised. The Manager shall render or cause to be rendered regular reports to the Trust, at regular meetings of its Board of Trustees and at such other times as may be reasonably requested by the Trust’s Board of Trustees, of (i) the decisions made with respect to the investment of the Fund’s assets and the purchase and sale of its investment securities, (ii) the reasons for such decisions and (iii) the extent to which those decisions have been implemented. (b) The Manager, subject to and in accordance with any directions which the Trust’s Board of Trustees may issue from time to time, shall place, in the name of the Fund, orders for the execution of the Fund’s securities transactions. When placing such orders, the Manager shall seek to obtain the best net price and execution for the Fund, but this requirement shall not be deemed to obligate the Manager to place any order solely on the basis of obtaining the lowest commission rate if the other standards set forth in this section have been satisfied. The parties recognize that there are likely to be many cases in which different brokers are equally able to provide such best price and execution and that, in selecting among such brokers with respect to particular trades, it is desirable to choose those brokers who furnish research, statistical, quotations and other information to the Fund and the Manager in accordance with the standards set forth below. Moreover, to the extent that it continues to be lawful to do so and so long as the Board of Trustees determines that the Fund will benefit, directly or indirectly, by doing so, the Manager may place orders with a broker who charges a commission for that transaction which is in excess of the amount of commission that another broker would have charged for effecting that transaction, provided that the excess commission is reasonable in relation to the value of “brokerage and research services” (as defined in Section 28(e)(3) of the Securities Exchange Act of 1934) provided by that broker. Accordingly, the Trust and the Manager agree that the Manager shall select brokers for the execution of the Fund’s transactions from among: (i) Those brokers and dealers who provide quotations and other services to the Fund, specifically including the quotations necessary to determine the Fund’s net assets, in such amount of total brokerage as may reasonably be required in light of such services; and (ii) Those brokers and dealers who supply research, statistical and other data to the Manager or its affiliates which the Manager or its affiliates may lawfully and appropriately use in their investment management capacities, which relate directly to securities, actual or potential, of the Fund, or which place the Manager in a better position to make decisions in connection with the management of the Fund’s assets and securities, whether or not such data may also be useful to the Manager and its affiliates in managing other portfolios or advising other clients, in such amount of total brokerage as may reasonably be required. (c) The Manager shall render regular reports to the Trust, not more frequently than quarterly, of how much total brokerage business has been placed by the Manager, on behalf of the Fund, with brokers falling into each of the categories referred to above and the manner in which the allocation has been accomplished. (d) The Manager agrees that no investment decision will be made or influenced by a desire to provide brokerage for allocation in accordance with the foregoing, and that the right to make such allocation of brokerage shall not interfere with the Manager’s paramount duty to obtain the best net price and execution for the Fund. (e) Decisions on proxy voting shall be made by the Manager unless the Board of Trustees determines otherwise. Pursuant to its authority, the Manager shall have the power to vote, either in person or by proxy, all securities in which the Fund may be invested from time to time, and shall not be required to seek or take instructions from the Fund with respect thereto. The Manager shall not be expected or required to take any action other than the rendering of investment-related advice with respect to lawsuits involving securities presently or formerly held in the Fund, or the issuers thereof, including actions involving bankruptcy. In the case of class action suits involving issuers held in the Fund, the Manager may include information about the Fund for purposes of participating in any settlements.

  • STATEWIDE CONTRACT MANAGEMENT SYSTEM If the maximum amount payable to Contractor under this Contract is $100,000 or greater, either on the Effective Date or at any time thereafter, this section shall apply. Contractor agrees to be governed by and comply with the provisions of §§00-000-000, 00-000-000, 00-000-000, and 00- 000-000, C.R.S. regarding the monitoring of vendor performance and the reporting of contract information in the State’s contract management system (“Contract Management System” or “CMS”). Contractor’s performance shall be subject to evaluation and review in accordance with the terms and conditions of this Contract, Colorado statutes governing CMS, and State Fiscal Rules and State Controller policies.

  • Inpatient Services Hospital Rehabilitation Facility

  • Quality Management Grantee will: 1. comply with quality management requirements as directed by the System Agency. 2. develop and implement a Quality Management Plan (QMP) that conforms with 25 TAC § 448.504 and make the QMP available to System Agency upon request. The QMP must be developed no later than the end of the first quarter of the Contract term. 3. update and revise the QMP each biennium or sooner, if necessary. Xxxxxxx’s governing body will review and approve the initial QMP, within the first quarter of the Contract term, and each updated and revised QMP thereafter. The QMP must describe Xxxxxxx’s methods to measure, assess, and improve - i. Implementation of evidence-based practices, programs and research-based approaches to service delivery; ii. Client/participant satisfaction with the services provided by Xxxxxxx; iii. Service capacity and access to services; iv. Client/participant continuum of care; and v. Accuracy of data reported to the state. 4. participate in continuous quality improvement (CQI) activities as defined and scheduled by the state including, but not limited to data verification, performing self-reviews; submitting self-review results and supporting documentation for the state’s desk reviews; and participating in the state’s onsite or desk reviews. 5. submit plan of improvement or corrective action plan and supporting documentation as requested by System Agency. 6. participate in and actively pursue CQI activities that support performance and outcomes improvement. 7. respond to consultation recommendations by System Agency, which may include, but are not limited to the following: i. Staff training; ii. Self-monitoring activities guided by System Agency, including use of quality management tools to self-identify compliance issues; and iii. Monitoring of performance reports in the System Agency electronic clinical management system.

  • Quality Management System Supplier hereby undertakes, warrants and confirms, and will ensue same for its subcontractors, to remain certified in accordance with ISO 9001 standard or equivalent. At any time during the term of this Agreement, the Supplier shall, if so instructed by ISR, provide evidence of such certifications. In any event, Supplier must notify ISR, in writing, in the event said certification is suspended and/or canceled and/or not continued.

Draft better contracts in just 5 minutes Get the weekly Law Insider newsletter packed with expert videos, webinars, ebooks, and more!