Laserfiche WebLink
Security Policies and Procedures <br />F. Encryption of backups <br />The backups of data will be encrypted on the NAS using AES 256 bit encryption. Any <br />local backups that employees make must be encrypted at a minimum of 256 bit <br />encryption. <br />G. Restoring data <br />In the event that a workstation fails, is stolen, or is damaged whether physically or by <br />malware. It is the policy of Virtru that this device will be replaced within 24 hours. The <br />IT department will be responsible for reprovisioning this device, and testing that the <br />workstation is functioning properly before giving the device to the employee. <br />H. Enforcement <br />Anyone found to have violated this policy may be subject to disciplinary action, up to <br />and including suspension of access to technology resources or termination of <br />employment. A violation of this policy by a temporary worker, contractor or vendor <br />may result in action up to and including termination of their contract or assignment <br />with Virtru. <br />XXXI. Information Integrity Management Policy <br />A. Overview <br />The other policies in this document contribute to the integrity of the data in our <br />systems. Notably, the Data Backup Plan, the Access Control Policy, and the Malware <br />Management Policy contribute to data integrity. In addition to these, we add the <br />following policy elements. <br />B. Policy <br />Virtru will configure our applications software to use the available edits on data that is <br />entered into our systems. These edits will check for internal data consistency, <br />reasonableness of data, and logical relations among data items. <br />XXXII. Security Incident Management Policy <br />A. Overview <br />Virtru recognizes that, despite having reasonable security safeguards, we may have <br />security incidents. <br />B. Procedures <br />To manage these incidents, Virtru will do the following: <br />61 <br />Rev.2015.8.6 <br />