13.07.2015 Views

ANNEX A, CHAPTER 40 A-FN-105-001/AG-001 40A-1 CREDIT ...

ANNEX A, CHAPTER 40 A-FN-105-001/AG-001 40A-1 CREDIT ...

ANNEX A, CHAPTER 40 A-FN-105-001/AG-001 40A-1 CREDIT ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

<strong>ANNEX</strong> A, <strong>CHAPTER</strong> <strong>40</strong>A-<strong>FN</strong>-<strong>105</strong>-<strong>001</strong>/<strong>AG</strong>-<strong>001</strong><strong>CREDIT</strong> CARD INFORMATION STOR<strong>AG</strong>E AND RETENTION - INFORMATIONSECURITYGENERAL OFFICE - INFORMATION SECURITY PROCEDURES1. When sensitive matter is removed from storage containers for working purposes,it is to be kept under constant surveillance and placed face down or covered in thepresence of visitors or others who do not have a need-to-know.2. At the end of each working day, supervisors and others responsible for thecustody of sensitive matter are to ensure that a security check is made to confirm that:a. Classified and/or Designated (C/D) matter has been appropriately securedwith particular attention being paid to desk drawers, bookcases and filingtrays where such matter may have been placed and overlooked;b. C/D waste has been collected and secured in accordance with the highestsensitivity of matter in the waste;c. Reproduction equipment has been immobilized or properly secured,unless warranted otherwise by way of a Threat and Risk Assessment(TRA); andd. Doors and windows have been secured in accordance with localprocedures.3. Form DND 1063, Security Check Warning Card (NSN 9905-21-903- 0274) orDND 1064, Desk Top Security Check Warning Card (NSN 7530-21-903-1229) is to bedisplayed in a prominent position inside the entrance to areas in which sensitive matteris stored. These forms serve as a constant reminder to personnel to conduct a securitycheck of their areas before vacating the premises, and identify the designated areasecurity officer.4. Security Branch personnel and appointed unit security officers will conductperiodic 'no notice' security checks during working and silent hours to ensurecompliance with security regulations and the proper security protection is being affordedto DND sensitive assets.5. In the event of a fire, bomb threat, or other situation requiring emergencyevacuation of personnel from classified or designated work areas, consideration mustbe given to the safety of personnel first. If time permits, sensitive matter should besecured by the quickest means possible. Under these conditions, individual files maynot be secured at the proper level of protection; however, some degree of protection willbe afforded to large holdings of sensitive matter.<strong>40</strong>A-1


<strong>ANNEX</strong> A, <strong>CHAPTER</strong> <strong>40</strong>A-<strong>FN</strong>-<strong>105</strong>-<strong>001</strong>/<strong>AG</strong>-<strong>001</strong>6. When fire or explosion occurs in an area containing sensitive matter, the areamust be guarded until a search of the damaged area can be conducted to recoverexposed or damaged classified matter and such matter can be returned to a securefacility.PROTECTED B INFORMATION – PERSONAL <strong>CREDIT</strong> CARD INFORMATIONACCESS CRITERIA7. DGPFSS employees and members of DND/CF, regardless of rank or status,shall NOT be afforded access to personal credit card information unless the followingthree mandatory criteria are apparent:a. demonstration of a need-to-know. (The application of the need-to-knowprinciple is to limit the access to information to those whose duties requiresuch access);b. possession of the appropriate security screening level –“EnhancedReliability Check” (ERC) or higher; andc. access has been authorized by the local NPP Accounting Manager, NPPActivity Manager or higher authority.NOTE: Reliability Screening consists of two elements; a Basic ReliabilityCheck and an Enhanced Reliability Check (ERC). Each providesDGPFSS as the prospective employer with indications as to whether theperson they are about to hire can be expected to be reliable andtrustworthy in the performance of their duties. From information providedby the applicant, an assessment is carried out to determine whether or notthat person is suitable for employment and whether they may have accessto designated material.<strong>40</strong>A-2

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!