Page 19 - Information_Security_Program
P. 19

Employees               DP241.8     In emergency situations where a person's health or well‐being is in imminent danger,
                                             employees may grant emergency access to Privacy Restricted information must as
                                             soon as possible report such access to their supervisor and the Director of
                                             Information Technology, Privacy and Data Security and take available steps after the
                                             emergency to mitigate any ongoing access to that information.




         Employees               DP241.9     Employees and contractors accessing information systems of the organization or
                                             other organizations must restrict their access to and use of those systems to their
                                             authorized roles. They must not make queries or searches of those systems that are
                                             not directly needed for their roles and authorized tasks.

         Directors, Managers                 Access will be administered via an automated access control system.
         and Supervisors to
         request, Chief Officer s
         or Director of
         Information
         Technology, Privacy
         and Data Security to
         approve and IT Staff to
         do.






















































                                                                                                         16 | Page
        GES CONFIDENTIAL
   14   15   16   17   18   19   20   21   22   23   24