Our Partners close more business.

Use these powerful resources to win more business, faster, with less effort.  
Call 877-411-2220 x121 for personal support with any opportunity.

RESET SEARCH

Hosting Quote Estimator

GET a FREE Sandbox or Trial Environment NOW

How To Use This Tool:  

To find answers to common RFP and RFI questions, select a tag, or, search for terms like "security", "performance", etc.  You will find common questions and answers grouped together in one record.  Follow the tag links to refine your search.  Supporting downloads and documentation are available, below.

Please login to obtain download access to additional supporting documentation.  Registered users can also contribute to the database.  You can request access by Contacting Us.

© Omegabit LLC, 2023

Enter a Search Phrase or Select a Tag

Contenidos con etiqueta media protection .

Media Policy and Procedures

Q:

Do you have formal policy and procedures which document your media protection controls?

Do you use removable media for storing and processing client related data? If yes, do you mark each removable media in a manner indicating the distribution limitations, handling requirements, and applicable security markings of the information? Removable information system media include both digital media (e.g., diskettes, magnetic tapes, external/removable hard drives, flash/thumb drives, compact disks, digital video disks) and non-digital media (e.g., paper, microfilm).

Do you encrypt digital media or mobile devices (e.g., tapes, external/removable hard drives, CDs, DVDs, flash/thumb drives, laptops, tablets and etc.) containing Federal Reserve related data?


A:

Classification and handling varies by Client requirements. However, as it relates to the transmission of PII or other sensitive data, strong, modern cipher-based encryption is employed, and only using methods and under circumstances explicitly authorized by the Client. All physical media is labeled (except where intentionally obfuscated), serialized, and traceable. Electronic transmission is preferred.

Only when requested and approved by the Client and confirmed to be commensurate with operating restrictions and audit controls stipulated by the Client for specifically authorized individuals.

N/A; per Client requirements is supported.



No hay ningún comentario aún. Sea usted el primero.