Common use of Order control Clause in Contracts

Order control. The following measures are implemented in order to ensure that Personal Data which are processed on your behalf can only be processed in compliance with your instructions: a) Internal communication: various methods of internal communication are implemented at a global level to help employees understand their individual roles and responsibilities and to communicate significant events in a timely manner. These methods include orientation and training programs for newly hired employees and regular management meetings for updates on business performance and other matters. b) Corporate Segregation: Logically, the production network is segregated from the corporate network by means of a complex set of network security / segregation devices. Developers and administrators on the corporate network who need to access in order to maintain them must explicitly request access. Approved personnel then connect to the network through secure means. c) Robust Compliance Program: The providers of our cloud infrastructure are obliged to (i) implement and maintain a security program that complies, inter alia, with the ISO 27001 or a successor standard (if any) that is substantially equivalent to ISO 27001 and that is designed to provide at least the same level of protection as evidenced by the certification of the providers under ISO 2018 and (ii) have the adequacy of their security measures annually verified by independent auditors.

Appears in 3 contracts

Sources: Data Processing Agreement, Data Processing Agreement, Data Processing Agreement

Order control. The following measures are implemented in order to ensure that Personal Data which are processed on your behalf can only be processed in compliance with your instructions: a) Internal communication: various methods of internal communication are implemented at a global level to help employees understand their individual roles and responsibilities and to communicate significant events in a timely manner. These methods include orientation and training programs for newly hired employees and regular management meetings for updates on business performance and other matters. b) Corporate Segregationsegregation: Logically, the production network is segregated from the corporate network by means of a complex set of network security / segregation devices. Developers and administrators on the corporate network who need to access in order to maintain them must explicitly request access. Approved personnel then connect to the network through secure means. c) Robust Compliance Programcompliance program: The providers of our cloud infrastructure are obliged to (i) implement and maintain a security program that complies, inter alia, with the ISO 27001 or a successor standard (if any) that is substantially equivalent to ISO 27001 and that is designed to provide at least the same level of protection as evidenced by the certification of the providers under ISO 2018 27001 and (ii) have the adequacy of their security measures annually verified by independent auditors. d) Policies and security awareness Training: We and our Subprocessors maintain and provide periodic security awareness training to all information system users. Policies and procedures have been established based upon data security and data protection requirements.

Appears in 1 contract

Sources: Data Processing Agreement