{"id":3604,"date":"2020-01-23T12:32:03","date_gmt":"2020-01-23T12:32:03","guid":{"rendered":"https:\/\/nissa.gov.ly\/%d8%b3%d9%8a%d8%a7%d8%b3%d8%a9-%d8%ad%d9%85%d8%a7%d9%8a%d8%a9-%d8%a7%d9%84%d8%a8%d9%8a%d8%a7%d9%86%d8%a7%d8%aa\/"},"modified":"2020-04-19T20:38:32","modified_gmt":"2020-04-19T20:38:32","slug":"data-privacy-policy","status":"publish","type":"page","link":"https:\/\/nissa.gov.ly\/en\/main-services\/data-privacy-policy\/","title":{"rendered":"Data Privacy Policy"},"content":{"rendered":"<div>\n<p>        <img decoding=\"async\" src=\"wp-content\/uploads\/download-pdf.svg\" alt=\"\"><\/p>\n<h6>You can download the data protection policy as pdf by clicking on this link<\/h6>\n<p><a href=\"\/gavedug\/nissa.demo_.ly-\u0633\u064a\u0627\u0633\u0627\u062a-\u0627\u0644\u0645\u0633\u062a\u062e\u062f\u0645-\u0627\u0644\u0647\u064a\u064a\u0654\u0629-\u0627\u0644\u0648\u0637\u0646\u064a\u0629-\u0644\u0627\u0654\u0645\u0646-\u0648\u0633\u0644\u0627\u0645\u0629-\u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a.pdf\">download<span style=\"padding-right:10px;\" uk-icon=\"arrow-down\"><\/span><\/a><\/p>\n<\/div>\n<h3><b>Information Classification Policy<\/b><\/h3>\n<ul>\n<li>\n<h4>Introduction<\/h4>\n<div>\n<p><span style=\"font-weight: 400;\">It is <\/span><span style=\"font-weight: 400;\">essential for &#8220;Organization&#8221; to classify its information <\/span><span style=\"font-weight: 400;\">assets<\/span><span style=\"font-weight: 400;\"> to<\/span><span style=\"font-weight: 400;\"> help manage and protect it. The various departments at &#8220;Organization&#8221; have a multitude types of documents and data, each business unit or department should classify its data by considering the potential for harm to individuals or the University in the event of unintended disclosure, modification, or loss. This can be done by identifying which information should be protected and which information shall be placed open to the public and third parties.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h4>Purpose<\/h4>\n<div>\n<p><span style=\"font-weight: 400;\">In order to preserve the appropriate confidentiality, integrity and availability of &#8220;Organization&#8217;s&#8221; information assets, the information classification policy describes principles that need to be followed to protect information through specifying how and to whom you can distribute information with a particular classification.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">To provide the basis for protecting the confidentiality of data at &#8220;Organization&#8221; by establishing a data classification system. Further policies and standards will specify handling requirements for data based on their classification.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h4>Domain<\/h4>\n<div>\n<p><span style=\"font-weight: 400;\">This policy applies to all data or information that is created, collected, stored or processed by &#8220;Organization&#8221;, in electronic or non-electronic formats, irrespective of the data location or the type of device it resides on. All staff should consequently use it, and third parties who interact with information held by and on behalf of &#8220;Organization&#8221;.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h4>Policy<\/h4>\n<div>\n<p class=\"p1\" style=\"text-align: left;\"><span style=\"font-weight: 400;\">All data at &#8220;Organization&#8221; shall be assigned one of the following classifications. Collections of diverse information should be classified as to the most secure classification level of an individual information component with the aggregated information.<\/span><\/p>\n<p style=\"text-align: left;\">1. <b>Confidential (restricted):<\/b><span style=\"font-weight: 400;\"> Information that is classified as confidential or restricted includes data that can be catastrophic to one or more individuals and\/or organizations if compromised or lost. Such information is frequently provided on a \u201cneed to know\u201d basis and might include:<\/span><span class=\"s1\"><br \/><\/span><\/p>\n<ul class=\"ul1\" style=\"text-align: left;\">\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Personal data, including personally identifiable information such as Social Security or national identification numbers, passport numbers, credit card numbers, driver&#8217;s license numbers, medical records.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Financial records, including financial account numbers such as checking or investment account numbers.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Business material, such as documents or data that is unique or specific intellectual property.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Legal data, including potential attorney-privileged material.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Authentication data, including private cryptography keys, username password pairs.<\/span><\/li>\n<\/ul>\n<p style=\"text-align: left;\">2. <b>For internal use only (sensitive): <\/b><span style=\"font-weight: 400;\">Information that is classified as being of medium sensitivity includes files and data that would not have a severe impact on an individual and\/or organization if lost or destroyed. Such information might include:<\/span><span class=\"s1\"><br \/><\/span><\/p>\n<ul class=\"ul1\" style=\"text-align: left;\">\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Email, most of which can be deleted or distributed without causing a crisis (excluding mailboxes or email from individuals who are identified in the confidential classification).<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Documents and files that do not include confidential data.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Anything that is not confidential. It can include most business data, because most files that are managed or used day-to-day can be classified as sensitive.<\/span><\/li>\n<\/ul>\n<p style=\"text-align: left;\">3. <b>Public (unrestricted):<\/b><span style=\"font-weight: 400;\"> Information that is classified as public includes data and files that are not critical to business needs or operations. This classification can also include data that has deliberately been released to the public for their use, such as marketing material or press announcements. In addition, this classification can include data such as spam email messages stored by an email service.<\/span><\/p>\n<p style=\"text-align: left;\">4.<span style=\"font-weight: 400;\">&#8220;Organization&#8221; associates shall be guided by the information category in their security-related handling &#8220;Organization&#8221; information.<\/span><span class=\"s1\"><br \/><\/span><\/p>\n<\/div>\n<\/li>\n<\/ul>\n<h3><b>Information Protection Policy<\/b><\/h3>\n<ul>\n<li>\n<h4>Introduction<\/h4>\n<div>\n<p><span style=\"font-weight: 400;\">Information is a major asset that &#8220;Organization&#8221; has a responsibility and requirement to protect. Differently classified information should appropriately protected in storage, transit, access etc. from modification or disclosure.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h4>Purpose<\/h4>\n<div>\n<p><span style=\"font-weight: 400;\">Information Protection Policy addresses the stocks of information (electronic data or paper records) that &#8220;Organization&#8221; maintains, and also the people that use them, the processes they follow and the physical computer equipment used to access them, all these areas addresses to ensure that high confidentiality, quality and availability standards of information are maintained.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The following policy details the basic requirements and responsibilities for the proper management of information assets at &#8220;Organization&#8221;. The policy specifies the means of information handling and transfer within the Business.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h4>Domain<\/h4>\n<div>\n<p><span style=\"font-weight: 400;\">This Policy applies to all the systems, people and business processes that make up the Business&#8217;s information systems. This includes all Executives, Committees, Departments, Partners, Employees, contractual third parties and agents of &#8220;Organization&#8221; who have access to Information Systems or information used for &#8220;Organization&#8221; purposes.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h4>Information assets Owner<\/h4>\n<div>\n<ul class=\"ol1\">\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">All important information assets must have a nominated owner and should be accounted for.\u00a0 An owner must be a member of staff whose seniority is appropriate for the value of the asset they own.\u00a0 The owner\u2019s responsibility for the asset and the requirement for them to maintain it should be formalized and agreed.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Items of information that have no security classification and are of limited or no practical value should not be assigned a formal owner or inventoried.\u00a0 Information should be destroyed if there is no legal or operational need to keep it and temporary owners should be assigned within each department to ensure that this is done.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">For new documents that have a specific, short term localized use, the creator of the document will be the originator.\u00a0 This includes letters, spread sheets and reports created by staff. All staff must be informed of their responsibility for the documents they create.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">For information assets whose use throughout &#8220;Organization&#8221; is widespread a corporate owner must be designated and the responsibility clearly documented.\u00a0 This should be the person who has the most control over the information.<\/span><\/li>\n<\/ul>\n<\/div>\n<\/li>\n<li>\n<h4>Information storage<\/h4>\n<div>\n<ul class=\"ol1\">\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">All electronic information will be stored on centralized facilities to allow regular backups to take place.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Employees should not be allowed to access information until they understand and agree the legislated responsibilities for the information that they will be handling.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Databases holding personal information will have a defined security and system management procedure for the records and documentation.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Files which are identified as a potential security risk should only be stored on secure network areas.<\/span><\/li>\n<\/ul>\n<\/div>\n<\/li>\n<li>\n<h4>Disclosure of Information<\/h4>\n<div>\n<ul class=\"ol1\">\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">In the case of sharing restricted information with other organization, disclosing such information must not be to any other person or organization via any insecure method.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Where information is disclosed\/shared it should only be done so in accordance with a documented Information Sharing Protocol and\/or Data Exchange Agreement.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Disclosing restricted information to any external organization is also prohibited.<\/span><\/li>\n<\/ul>\n<\/div>\n<\/li>\n<\/ul>\n<h3><b>Record Retention and Destruction Policy<\/b><\/h3>\n<ul>\n<li>\n<h4>Introduction<\/h4>\n<div>\n<p><span style=\"font-weight: 400;\">Record retention and destruction is an important substantive component of many of the laws with which most corporations must comply, and it is often the vehicle by which compliance is established.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h4>Purpose<\/h4>\n<div>\n<p><span style=\"font-weight: 400;\">The purpose of this policy is to ensure that necessary records and documents of &#8220;Organization&#8221; are adequately protected and maintained and to ensure that records that are no longer needed by &#8220;Organization&#8221;\u00a0 or are of no value are discarded at the proper time. <\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h4>Domain<\/h4>\n<div>\n<p><span style=\"font-weight: 400;\">This Policy applies to all records generated in the course of &#8220;Organization&#8217;s&#8221; operation, including both original documents and reproductions.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">All employees should comply with any published records retention policies.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h4>Policy<\/h4>\n<div>\n<p>1<span style=\"font-weight: 400;\">Accounting and Finance records include, but may not be limited to, <\/span>&gt;<\/p>\n<ul class=\"ul1\">\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Documents concerning payroll, accounting procedures, accounts Payable ledgers and schedules, accounts receivable ledgers and schedules, employee expense reports, interim financial statements, notes receivable ledgers and schedules. These should be retained for at least five years.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Annual audit reports and financial statements should be permanent retained, and the annual plans and budgets should retained for the time required to implement them and\/or refer to them as needed.<\/span><\/li>\n<\/ul>\n<p>2. <span style=\"font-weight: 400;\">Contracts and Related Correspondence (including any proposal that resulted in the contract and all other supportive documentation) should be permanently retained.<\/span><\/p>\n<p>3. <span style=\"font-weight: 400;\">\u201cOrganization\u201d records (minute books, signed minutes of the Board and all committees, corporate seals, articles of incorporation, Contribution records and annual corporate reports) as well as licenses, property insurance and permits should have a permanent retention. <\/span><span class=\"s1\"><br \/><\/span><\/p>\n<p>4.<span style=\"font-weight: 400;\">It is also possible to destroy documents considered in the judgment of a valuable documents and have never been used\u00a0 or modified for the last 5 years, only if these documents are subject to examination or review or were required in an ongoing legal proceeding, or Instructions\/regulations set by the Ministry of Finance decides to keep them longer.\u00a0<\/span><span style=\"font-weight: 400;\">Destruction of those documents only after taking the necessary procedures to record their data or its summary.\u00a0 <\/span><\/p>\n<p><span class=\"s1\">\u00a0<\/span><\/p>\n<p>5. <span style=\"font-weight: 400;\">Electronic documents<\/span><span class=\"s1\">:<br \/><\/span><\/p>\n<ul class=\"ul1\">\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Electronic Documents: including Microsoft Office Suite and PDF files. Retention also depends on the subject matter.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Electronic Mail: Not all email needs to be retained, depending on the subject matter, E-mail that needs to be saved should be either printed in hard copy and kept in the appropriate file, or downloaded to a computer file and kept electronically or on disk as a separate file.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Web Page Files: All workstations: Internet Browsers should be scheduled to delete Internet cookies once per month.<\/span><\/li>\n<\/ul>\n<p>6. <span style=\"font-weight: 400;\">Legal files and papers <\/span><span class=\"s1\">:<br \/><\/span><\/p>\n<p><span style=\"font-weight: 400;\">Permanent retention of \u201cOrganization\u201d legal archive as follows:<\/span><\/p>\n<ul>\n<li style=\"list-style-type: none;\">\n<ul>\n<li style=\"list-style-type: none;\">\n<ul>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Files of the judicial proceedings and the decisions of the preliminary and final judgments, decisions and orders of the courts, including all relevant files.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Legal notes and opinions issued by legal offices.<\/span><\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<p>7. <span style=\"font-weight: 400;\">Personnel records<\/span><span class=\"s1\">:<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Employee Personnel file should have a permanent retention even after <\/span><span style=\"font-weight: 400;\">Termination of employee relationship with the \u201cOrganization\u201d<\/span><\/li>\n<\/ul>\n<ul>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Employment records (including individual attendance records, application forms, job or status change records, termination papers,\u00a0 test results, training and qualification records) shall be retained as needed and for the necessary period according to \u201cOrganization estimates.<\/span><\/li>\n<li><span class=\"s1\"><span style=\"font-weight: 400;\">\u00a0<\/span><span style=\"font-weight: 400;\">\u201cOrganization\u201d should retained for a period of 2 years all Job interview related documents (including written examinations, records, lists and all other documents relating to the exam). <\/span><\/span><\/li>\n<\/ul>\n<p>8. <span style=\"font-weight: 400;\">Records and documents The \u201cOrganization\u201d has the discretion to determine the time required to retain them and the discretionary authority is related to the continued need of the \u201cOrganization\u201d <\/span><span class=\"s1\">:<br \/><\/span><\/p>\n<ul class=\"ul1\">\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Consultant&#8217;s reports.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Policy and procedures manuals (Original \/ Copies)<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Annual reports.<\/span><\/li>\n<\/ul>\n<p>9. <span style=\"font-weight: 400;\">Document destruction procedures<\/span><span class=\"s1\">:<br \/><\/span><\/p>\n<ul class=\"ul1\">\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Records must not be removed or destroyed before retention period expiration;\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Once records have been retained for the applicable period of time, set forth in the record retention<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Destruction of finance records shall be in accordance to budget and accounts procedures.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Destruction of financial and personnel-related documents and all paper documents will be accomplished by a method that prevents retrieval of this data.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Electronic data contained on all other media shall be destroyed by the physical destruction of that media.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Records must be destroyed securely and completely.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Recorded Destruction in formal documented processes, for data destruction within the &#8220;Organization&#8221;.<\/span><\/li>\n<\/ul>\n<\/div>\n<\/li>\n<\/ul>\n<h3><b>Information Dissemination Policy<\/b><\/h3>\n<ul>\n<li>\n<h4>Introduction<\/h4>\n<div>\n<p class=\"p1\"><span style=\"font-weight: 400;\">This policy discuss the types of information that can be disseminated to internal and external groups, as well as the methods by which this information is disseminated. Moreover, this policy explains the specific type of information that will be disclosed and not to be disclosed.<\/span><\/p>\n<ul>\n<li><b>Information not to be disclosed<\/b><\/li>\n<\/ul>\n<ul>\n<li style=\"list-style-type: none;\">\n<ul class=\"ul1\">\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Personal information includes staff records, medical information, information on salary and benefits.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Financial information.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Legal, disciplinary or investigative matters; the concerned person shall be notified by official means.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Deliberative information including e-mail, notes, letters, memoranda, draft reports.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">All of the confidential information.<\/span><\/li>\n<\/ul>\n<\/li>\n<li><b>Information to be disclosed in connection with other organizations<\/b><\/li>\n<\/ul>\n<ul>\n<li style=\"list-style-type: none;\">\n<ul class=\"ul1\">\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Initial project abstracts.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Any information\u00a0 the \u201cOrganization\u201d deems necessary for dissemination<\/span><\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<\/div>\n<\/li>\n<li>\n<h4>Purpose<\/h4>\n<div>\n<p><span style=\"font-weight: 400;\">Is to ensure personal information and confidential information are protected from unauthorized use and disclosure and also to facilitate the identification of information to support routine disclosure and active dissemination of information. This policy was also set to protect the intellectual property of &#8220;Organization&#8221;.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h4>Domain<\/h4>\n<div>\n<p><span style=\"font-weight: 400;\">This policy applies to all information produced, collected and stored by &#8220;Organization&#8221;.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h4>Policy<\/h4>\n<div>\n<ol>\n<li style=\"font-weight: 400;\">\n<p><span style=\"font-weight: 400;\">Information which is considered unrestricted can be open to the public and all employees as well as Third Parties.\u00a0<\/span><\/p>\n<\/li>\n<li style=\"font-weight: 400;\">\n<p><span style=\"font-weight: 400;\">Information which needs to be protected is accessed by authorized access such as employees, contractors and on a &#8220;need-to-know&#8221; basis for business related purposes. This access should be granted for a specific period required and set by higher level management.<\/span><\/p>\n<\/li>\n<li style=\"font-weight: 400;\">\n<p><span style=\"font-weight: 400;\">Confidential information is limited to individuals in a specific function, group or role. pre clearance based on position is required in order to access confidential information held by &#8220;Organization&#8221;.<\/span><\/p>\n<\/li>\n<li style=\"font-weight: 400;\">\n<p><span style=\"font-weight: 400;\">In term of restricted information where access is granted to limited named individuals based on job position.<\/span><\/p>\n<\/li>\n<\/ol>\n<p>\u00a0<\/p>\n<\/div>\n<\/li>\n<\/ul>\n<h3><b>Access to Information Policy<\/b><\/h3>\n<ul>\n<li>\n<h4>Introduction<\/h4>\n<div>\n<p><span style=\"font-weight: 400;\">&#8220;Organization&#8221; will determine the extent to which security classification needs to be applied to information assets. The security classification of information assets should highlight what type of information can be viewed or accessed by members of &#8220;Organization&#8221; staff or external parties. The different levels of information particularly sensitive or confidential information will require higher level of authorization for access.\u00a0 <\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h4>Purpose<\/h4>\n<div>\n<p><span style=\"font-weight: 400;\">The purpose of this policy is to limit the threat of losing or disclosing data that will affect the integrity, availability or confidentiality of data assets, by controlling the access to information with authorizations.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h4>Domain<\/h4>\n<div>\n<p><span style=\"font-weight: 400;\">This policy applies to all reports, research information, and supporting documentation originally produced or collected by &#8220;Organization&#8221;.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h4>Policy<\/h4>\n<div>\n<ul>\n<li><b><span style=\"font-weight: 400;\">Authorized individuals only access current and complete information<\/span><\/b><\/li>\n<\/ul>\n<ul>\n<li>\n<span style=\"font-weight: 400;\">Authorized users have access to and can use information when required.\u00a0<\/span>\n<\/li>\n<\/ul>\n<ul>\n<li>\n<span style=\"font-weight: 400;\">Authorized individuals, entities or processes only access information and the value of intellectual property are protected as needed.<\/span>\n<\/li>\n<\/ul>\n<p>\u00a0<\/p>\n<\/div>\n<\/li>\n<\/ul>\n<div>\n<p>    <base>\n<\/div>\n<p><!-- {\"type\":\"layout\",\"children\":[{\"name\":\"Section1\",\"type\":\"section\",\"props\":{\"width\":\"default\",\"padding\":\"\",\"style\":\"default\",\"header_overlay\":\"\",\"animation\":\"\",\"image_size\":\"cover\",\"image_position\":\"center-center\",\"vertical_align\":\"middle\",\"title_position\":\"top-left\",\"title_rotation\":\"left\",\"title_breakpoint\":\"xl\",\"image_effect\":\"\",\"text_color\":\"\",\"width_expand\":\"\",\"height\":\"\",\"header_transparent\":\"\"},\"children\":[{\"name\":\"\",\"type\":\"row\",\"props\":{\"layout\":\"3-4,1-4\",\"breakpoint\":\"m\",\"fixed_width\":\"large\",\"width\":\"\",\"width_expand\":\"\",\"height\":\"\",\"margin\":\"\",\"column_gap\":\"\",\"row_gap\":\"\",\"order_last\":true},\"children\":[{\"name\":\"\",\"type\":\"column\",\"props\":{\"image_position\":\"center-center\",\"media_overlay_gradient\":\"\"},\"children\":[{\"type\":\"panel\",\"props\":{\"link_text\":\"download<span style=\\\"padding-right:10px;\\\" uk-icon=\\\"arrow-down\\\"><\\\/span>\",\"title_hover_style\":\"reset\",\"title_element\":\"h6\",\"title_align\":\"top\",\"title_grid_width\":\"auto\",\"title_grid_breakpoint\":\"m\",\"meta_style\":\"meta\",\"meta_align\":\"below-title\",\"icon_ratio\":4,\"image_align\":\"left\",\"image_grid_width\":\"auto\",\"image_grid_breakpoint\":\"m\",\"image_svg_color\":\"emphasis\",\"link_style\":\"default\",\"margin\":\"medium\",\"panel_style\":\"card-default\",\"panel_content_padding\":\"\",\"panel_size\":\"\",\"title_style\":\"h6\",\"title_decoration\":\"\",\"title_font_family\":\"\",\"title_color\":\"primary\",\"title_grid_column_gap\":\"\",\"title_grid_row_gap\":\"\",\"title_margin\":\"\",\"meta_color\":\"\",\"meta_margin\":\"\",\"content_style\":\"\",\"content_margin\":\"\",\"image_transition\":\"\",\"image_border\":\"\",\"image_box_shadow\":\"\",\"image_hover_box_shadow\":\"\",\"image_box_decoration\":\"\",\"icon_color\":\"\",\"image_grid_column_gap\":\"\",\"image_grid_row_gap\":\"\",\"image_margin\":\"\",\"link_type\":\"\",\"link_size\":\"\",\"link_margin\":\"\",\"position\":\"\",\"position_z_index\":\"\",\"maxwidth\":\"\",\"maxwidth_breakpoint\":\"\",\"block_align\":\"\",\"block_align_breakpoint\":\"\",\"block_align_fallback\":\"\",\"text_align\":\"\",\"text_align_breakpoint\":\"\",\"text_align_fallback\":\"\",\"animation\":\"\",\"visibility\":\"\",\"title\":\"You can download the data protection policy as pdf by clicking on this link\",\"content\":\"\",\"image\":\"wp-content\\\/uploads\\\/download-pdf.svg\",\"link\":\"\\\/wp-content\\\/uploads\\\/nissa.demo_.ly-\\u0633\\u064a\\u0627\\u0633\\u0627\\u062a-\\u0627\\u0644\\u0645\\u0633\\u062a\\u062e\\u062f\\u0645-\\u0627\\u0644\\u0647\\u064a\\u064a\\u0654\\u0629-\\u0627\\u0644\\u0648\\u0637\\u0646\\u064a\\u0629-\\u0644\\u0627\\u0654\\u0645\\u0646-\\u0648\\u0633\\u0644\\u0627\\u0645\\u0629-\\u0627\\u0644\\u0645\\u0639\\u0644\\u0648\\u0645\\u0627\\u062a.pdf\",\"css\":\"\",\"margin_remove_bottom\":true},\"name\":\"call to action\"},{\"name\":\"\",\"type\":\"headline\",\"props\":{\"title_element\":\"h3\",\"title_style\":\"h3\",\"title_decoration\":\"bullet\",\"text_align\":\"\",\"text_align_breakpoint\":\"\",\"text_align_fallback\":\"\",\"maxwidth\":\"\",\"margin\":\"medium\",\"animation\":\"\",\"visibility\":\"\",\"content\":\"<b>Information Classification Policy<\\\/b>\",\"title_color\":\"\",\"maxwidth_breakpoint\":\"\",\"block_align\":\"\",\"title_font_family\":\"\",\"position\":\"\",\"position_z_index\":\"\",\"block_align_breakpoint\":\"\",\"block_align_fallback\":\"\",\"css\":\".el-element {\\npadding-top: 60px; \\n    margin-top: -20px !important;\\n}\"}},{\"type\":\"grid\",\"props\":{\"show_title\":true,\"show_meta\":true,\"show_content\":true,\"show_image\":true,\"show_link\":true,\"grid_default\":\"1\",\"grid_medium\":\"\",\"filter_style\":\"tab\",\"filter_all\":true,\"filter_position\":\"top\",\"filter_align\":\"left\",\"filter_grid_width\":\"auto\",\"title_element\":\"h4\",\"title_align\":\"top\",\"title_grid_width\":\"1-3\",\"meta_style\":\"meta\",\"meta_align\":\"below-title\",\"icon_ratio\":4,\"image_align\":\"top\",\"image_grid_width\":\"1-2\",\"image_svg_color\":\"emphasis\",\"link_text\":\"Read more\",\"link_style\":\"default\",\"margin\":\"default\",\"item_animation\":\"\",\"grid_small\":\"\",\"grid_large\":\"\",\"grid_xlarge\":\"\",\"filter_margin\":\"\",\"title_display\":\"\",\"content_display\":\"\",\"panel_style\":\"\",\"panel_content_padding\":\"\",\"panel_size\":\"\",\"item_maxwidth\":\"\",\"title_style\":\"h4\",\"title_decoration\":\"\",\"title_color\":\"\",\"title_margin\":\"\",\"meta_color\":\"\",\"meta_margin\":\"\",\"content_style\":\"\",\"content_margin\":\"\",\"image_border\":\"\",\"image_box_shadow\":\"\",\"image_hover_box_shadow\":\"\",\"image_box_decoration\":\"\",\"icon_color\":\"\",\"image_margin\":\"\",\"link_type\":\"\",\"link_size\":\"\",\"link_margin\":\"\",\"text_align\":\"\",\"text_align_breakpoint\":\"\",\"text_align_fallback\":\"\",\"maxwidth\":\"\",\"maxwidth_breakpoint\":\"\",\"visibility\":\"\",\"block_align\":\"\",\"title_hover_style\":\"reset\",\"grid_column_gap\":\"\",\"grid_row_gap\":\"\",\"grid_divider\":false,\"filter_grid_column_gap\":\"\",\"filter_grid_row_gap\":\"\",\"filter_grid_breakpoint\":\"m\",\"title_grid_column_gap\":\"\",\"title_grid_row_gap\":\"\",\"title_grid_breakpoint\":\"m\",\"image_grid_column_gap\":\"\",\"image_grid_row_gap\":\"\",\"image_grid_breakpoint\":\"m\",\"title_font_family\":\"\",\"image_transition\":\"\",\"position\":\"\",\"position_z_index\":\"\",\"block_align_breakpoint\":\"\",\"block_align_fallback\":\"\"},\"children\":[{\"type\":\"grid_item\",\"props\":{\"title\":\"Introduction\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">It is <\\\/span><span style=\\\"font-weight: 400;\\\">essential for \\\"Organization\\\" to classify its information <\\\/span><span style=\\\"font-weight: 400;\\\">assets<\\\/span><span style=\\\"font-weight: 400;\\\"> to<\\\/span><span style=\\\"font-weight: 400;\\\"> help manage and protect it. The various departments at \\\"Organization\\\" have a multitude types of documents and data, each business unit or department should classify its data by considering the potential for harm to individuals or the University in the event of unintended disclosure, modification, or loss. This can be done by identifying which information should be protected and which information shall be placed open to the public and third parties.<\\\/span><\\\/p>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Purpose\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">In order to preserve the appropriate confidentiality, integrity and availability of \\\"Organization's\\\" information assets, the information classification policy describes principles that need to be followed to protect information through specifying how and to whom you can distribute information with a particular classification.<\\\/span><\\\/p>\\n\n\n<p><span style=\\\"font-weight: 400;\\\">To provide the basis for protecting the confidentiality of data at \\\"Organization\\\" by establishing a data classification system. Further policies and standards will specify handling requirements for data based on their classification.<\\\/span><\\\/p>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Domain\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">This policy applies to all data or information that is created, collected, stored or processed by \\\"Organization\\\", in electronic or non-electronic formats, irrespective of the data location or the type of device it resides on. All staff should consequently use it, and third parties who interact with information held by and on behalf of \\\"Organization\\\".<\\\/span><\\\/p>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Policy\",\"content\":\"\n\n<p class=\\\"p1\\\" style=\\\"text-align: left;\\\"><span style=\\\"font-weight: 400;\\\">All data at \\\"Organization\\\" shall be assigned one of the following classifications. Collections of diverse information should be classified as to the most secure classification level of an individual information component with the aggregated information.<\\\/span><\\\/p>\\n\n\n<p style=\\\"text-align: left;\\\">1. <b>Confidential (restricted):<\\\/b><span style=\\\"font-weight: 400;\\\"> Information that is classified as confidential or restricted includes data that can be catastrophic to one or more individuals and\\\/or organizations if compromised or lost. Such information is frequently provided on a \\u201cneed to know\\u201d basis and might include:<\\\/span><span class=\\\"s1\\\"><br \\\/><\\\/span><\\\/p>\\n\n\n<ul class=\\\"ul1\\\" style=\\\"text-align: left;\\\">\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Personal data, including personally identifiable information such as Social Security or national identification numbers, passport numbers, credit card numbers, driver's license numbers, medical records.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Financial records, including financial account numbers such as checking or investment account numbers.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Business material, such as documents or data that is unique or specific intellectual property.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Legal data, including potential attorney-privileged material.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Authentication data, including private cryptography keys, username password pairs.<\\\/span><\\\/li>\\n<\\\/ul>\\n\n\n<p style=\\\"text-align: left;\\\">2. <b>For internal use only (sensitive): <\\\/b><span style=\\\"font-weight: 400;\\\">Information that is classified as being of medium sensitivity includes files and data that would not have a severe impact on an individual and\\\/or organization if lost or destroyed. Such information might include:<\\\/span><span class=\\\"s1\\\"><br \\\/><\\\/span><\\\/p>\\n\n\n<ul class=\\\"ul1\\\" style=\\\"text-align: left;\\\">\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Email, most of which can be deleted or distributed without causing a crisis (excluding mailboxes or email from individuals who are identified in the confidential classification).<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Documents and files that do not include confidential data.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Anything that is not confidential. It can include most business data, because most files that are managed or used day-to-day can be classified as sensitive.<\\\/span><\\\/li>\\n<\\\/ul>\\n\n\n<p style=\\\"text-align: left;\\\">3. <b>Public (unrestricted):<\\\/b><span style=\\\"font-weight: 400;\\\"> Information that is classified as public includes data and files that are not critical to business needs or operations. This classification can also include data that has deliberately been released to the public for their use, such as marketing material or press announcements. In addition, this classification can include data such as spam email messages stored by an email service.<\\\/span><\\\/p>\\n\n\n<p style=\\\"text-align: left;\\\">4.<span style=\\\"font-weight: 400;\\\">\\\"Organization\\\" associates shall be guided by the information category in their security-related handling \\\"Organization\\\" information.<\\\/span><span class=\\\"s1\\\"><br \\\/><\\\/span><\\\/p>\"}}]},{\"name\":\"\",\"type\":\"headline\",\"props\":{\"title_element\":\"h3\",\"title_style\":\"h3\",\"title_decoration\":\"bullet\",\"text_align\":\"\",\"text_align_breakpoint\":\"\",\"text_align_fallback\":\"\",\"maxwidth\":\"\",\"margin\":\"medium\",\"animation\":\"\",\"visibility\":\"\",\"content\":\"<b>Information Protection Policy<\\\/b>\",\"title_color\":\"\",\"maxwidth_breakpoint\":\"\",\"block_align\":\"\",\"title_font_family\":\"\",\"position\":\"\",\"position_z_index\":\"\",\"block_align_breakpoint\":\"\",\"block_align_fallback\":\"\",\"css\":\".el-element {\\npadding-top: 60px; \\n    margin-top: -20px !important;\\n}\"}},{\"type\":\"grid\",\"props\":{\"show_title\":true,\"show_meta\":true,\"show_content\":true,\"show_image\":true,\"show_link\":true,\"grid_default\":\"1\",\"grid_medium\":\"\",\"filter_style\":\"tab\",\"filter_all\":true,\"filter_position\":\"top\",\"filter_align\":\"left\",\"filter_grid_width\":\"auto\",\"title_element\":\"h4\",\"title_align\":\"top\",\"title_grid_width\":\"1-3\",\"meta_style\":\"meta\",\"meta_align\":\"below-title\",\"icon_ratio\":4,\"image_align\":\"top\",\"image_grid_width\":\"1-2\",\"image_svg_color\":\"emphasis\",\"link_text\":\"Read more\",\"link_style\":\"default\",\"margin\":\"default\",\"item_animation\":\"\",\"grid_small\":\"\",\"grid_large\":\"\",\"grid_xlarge\":\"\",\"filter_margin\":\"\",\"title_display\":\"\",\"content_display\":\"\",\"panel_style\":\"\",\"panel_content_padding\":\"\",\"panel_size\":\"\",\"item_maxwidth\":\"\",\"title_style\":\"h4\",\"title_decoration\":\"\",\"title_color\":\"\",\"title_margin\":\"\",\"meta_color\":\"\",\"meta_margin\":\"\",\"content_style\":\"\",\"content_margin\":\"\",\"image_border\":\"\",\"image_box_shadow\":\"\",\"image_hover_box_shadow\":\"\",\"image_box_decoration\":\"\",\"icon_color\":\"\",\"image_margin\":\"\",\"link_type\":\"\",\"link_size\":\"\",\"link_margin\":\"\",\"text_align\":\"\",\"text_align_breakpoint\":\"\",\"text_align_fallback\":\"\",\"maxwidth\":\"\",\"maxwidth_breakpoint\":\"\",\"visibility\":\"\",\"block_align\":\"\",\"title_hover_style\":\"reset\",\"grid_column_gap\":\"\",\"grid_row_gap\":\"\",\"grid_divider\":false,\"filter_grid_column_gap\":\"\",\"filter_grid_row_gap\":\"\",\"filter_grid_breakpoint\":\"m\",\"title_grid_column_gap\":\"\",\"title_grid_row_gap\":\"\",\"title_grid_breakpoint\":\"m\",\"image_grid_column_gap\":\"\",\"image_grid_row_gap\":\"\",\"image_grid_breakpoint\":\"m\",\"title_font_family\":\"\",\"image_transition\":\"\",\"position\":\"\",\"position_z_index\":\"\",\"block_align_breakpoint\":\"\",\"block_align_fallback\":\"\"},\"children\":[{\"type\":\"grid_item\",\"props\":{\"title\":\"Introduction\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">Information is a major asset that \\\"Organization\\\" has a responsibility and requirement to protect. Differently classified information should appropriately protected in storage, transit, access etc. from modification or disclosure.<\\\/span><\\\/p>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Purpose\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">Information Protection Policy addresses the stocks of information (electronic data or paper records) that \\\"Organization\\\" maintains, and also the people that use them, the processes they follow and the physical computer equipment used to access them, all these areas addresses to ensure that high confidentiality, quality and availability standards of information are maintained.<\\\/span><\\\/p>\\n\n\n<p><span style=\\\"font-weight: 400;\\\">The following policy details the basic requirements and responsibilities for the proper management of information assets at \\\"Organization\\\". The policy specifies the means of information handling and transfer within the Business.<\\\/span><\\\/p>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Domain\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">This Policy applies to all the systems, people and business processes that make up the Business's information systems. This includes all Executives, Committees, Departments, Partners, Employees, contractual third parties and agents of \\\"Organization\\\" who have access to Information Systems or information used for \\\"Organization\\\" purposes.<\\\/span><\\\/p>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Information assets Owner\",\"content\":\"\n\n<ul class=\\\"ol1\\\">\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">All important information assets must have a nominated owner and should be accounted for.\\u00a0 An owner must be a member of staff whose seniority is appropriate for the value of the asset they own.\\u00a0 The owner\\u2019s responsibility for the asset and the requirement for them to maintain it should be formalized and agreed.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Items of information that have no security classification and are of limited or no practical value should not be assigned a formal owner or inventoried.\\u00a0 Information should be destroyed if there is no legal or operational need to keep it and temporary owners should be assigned within each department to ensure that this is done.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">For new documents that have a specific, short term localized use, the creator of the document will be the originator.\\u00a0 This includes letters, spread sheets and reports created by staff. All staff must be informed of their responsibility for the documents they create.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">For information assets whose use throughout \\\"Organization\\\" is widespread a corporate owner must be designated and the responsibility clearly documented.\\u00a0 This should be the person who has the most control over the information.<\\\/span><\\\/li>\\n<\\\/ul>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Information storage\",\"content\":\"\n\n<ul class=\\\"ol1\\\">\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">All electronic information will be stored on centralized facilities to allow regular backups to take place.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Employees should not be allowed to access information until they understand and agree the legislated responsibilities for the information that they will be handling.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Databases holding personal information will have a defined security and system management procedure for the records and documentation.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Files which are identified as a potential security risk should only be stored on secure network areas.<\\\/span><\\\/li>\\n<\\\/ul>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Disclosure of Information\",\"content\":\"\n\n<ul class=\\\"ol1\\\">\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">In the case of sharing restricted information with other organization, disclosing such information must not be to any other person or organization via any insecure method.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Where information is disclosed\\\/shared it should only be done so in accordance with a documented Information Sharing Protocol and\\\/or Data Exchange Agreement.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Disclosing restricted information to any external organization is also prohibited.<\\\/span><\\\/li>\\n<\\\/ul>\"}}]},{\"name\":\"\",\"type\":\"headline\",\"props\":{\"title_element\":\"h3\",\"title_style\":\"h3\",\"title_decoration\":\"bullet\",\"text_align\":\"\",\"text_align_breakpoint\":\"\",\"text_align_fallback\":\"\",\"maxwidth\":\"\",\"margin\":\"medium\",\"animation\":\"\",\"visibility\":\"\",\"content\":\"<b>Record Retention and Destruction Policy<\\\/b>\",\"title_color\":\"\",\"maxwidth_breakpoint\":\"\",\"block_align\":\"\",\"title_font_family\":\"\",\"position\":\"\",\"position_z_index\":\"\",\"block_align_breakpoint\":\"\",\"block_align_fallback\":\"\",\"css\":\".el-element {\\npadding-top: 60px; \\n    margin-top: -20px !important;\\n}\"}},{\"type\":\"grid\",\"props\":{\"show_title\":true,\"show_meta\":true,\"show_content\":true,\"show_image\":true,\"show_link\":true,\"grid_default\":\"1\",\"grid_medium\":\"\",\"filter_style\":\"tab\",\"filter_all\":true,\"filter_position\":\"top\",\"filter_align\":\"left\",\"filter_grid_width\":\"auto\",\"title_element\":\"h4\",\"title_align\":\"top\",\"title_grid_width\":\"1-3\",\"meta_style\":\"meta\",\"meta_align\":\"below-title\",\"icon_ratio\":4,\"image_align\":\"top\",\"image_grid_width\":\"1-2\",\"image_svg_color\":\"emphasis\",\"link_text\":\"Read more\",\"link_style\":\"default\",\"margin\":\"default\",\"item_animation\":\"\",\"grid_small\":\"\",\"grid_large\":\"\",\"grid_xlarge\":\"\",\"filter_margin\":\"\",\"title_display\":\"\",\"content_display\":\"\",\"panel_style\":\"\",\"panel_content_padding\":\"\",\"panel_size\":\"\",\"item_maxwidth\":\"\",\"title_style\":\"h4\",\"title_decoration\":\"\",\"title_color\":\"\",\"title_margin\":\"\",\"meta_color\":\"\",\"meta_margin\":\"\",\"content_style\":\"\",\"content_margin\":\"\",\"image_border\":\"\",\"image_box_shadow\":\"\",\"image_hover_box_shadow\":\"\",\"image_box_decoration\":\"\",\"icon_color\":\"\",\"image_margin\":\"\",\"link_type\":\"\",\"link_size\":\"\",\"link_margin\":\"\",\"text_align\":\"\",\"text_align_breakpoint\":\"\",\"text_align_fallback\":\"\",\"maxwidth\":\"\",\"maxwidth_breakpoint\":\"\",\"visibility\":\"\",\"block_align\":\"\",\"title_hover_style\":\"reset\",\"grid_column_gap\":\"\",\"grid_row_gap\":\"\",\"grid_divider\":false,\"filter_grid_column_gap\":\"\",\"filter_grid_row_gap\":\"\",\"filter_grid_breakpoint\":\"m\",\"title_grid_column_gap\":\"\",\"title_grid_row_gap\":\"\",\"title_grid_breakpoint\":\"m\",\"image_grid_column_gap\":\"\",\"image_grid_row_gap\":\"\",\"image_grid_breakpoint\":\"m\",\"title_font_family\":\"\",\"image_transition\":\"\",\"position\":\"\",\"position_z_index\":\"\",\"block_align_breakpoint\":\"\",\"block_align_fallback\":\"\"},\"children\":[{\"type\":\"grid_item\",\"props\":{\"title\":\"Introduction\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">Record retention and destruction is an important substantive component of many of the laws with which most corporations must comply, and it is often the vehicle by which compliance is established.<\\\/span><\\\/p>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Purpose\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">The purpose of this policy is to ensure that necessary records and documents of \\\"Organization\\\" are adequately protected and maintained and to ensure that records that are no longer needed by \\\"Organization\\\"\\u00a0 or are of no value are discarded at the proper time. <\\\/span><\\\/p>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Domain\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">This Policy applies to all records generated in the course of \\\"Organization's\\\" operation, including both original documents and reproductions.<\\\/span><\\\/p>\\n\n\n<p><span style=\\\"font-weight: 400;\\\">All employees should comply with any published records retention policies.<\\\/span><\\\/p>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Policy\",\"content\":\"\n\n<p>1<span style=\\\"font-weight: 400;\\\">Accounting and Finance records include, but may not be limited to, <\\\/span>&gt;<\\\/p>\\n\n\n<ul class=\\\"ul1\\\">\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Documents concerning payroll, accounting procedures, accounts Payable ledgers and schedules, accounts receivable ledgers and schedules, employee expense reports, interim financial statements, notes receivable ledgers and schedules. These should be retained for at least five years.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Annual audit reports and financial statements should be permanent retained, and the annual plans and budgets should retained for the time required to implement them and\\\/or refer to them as needed.<\\\/span><\\\/li>\\n<\\\/ul>\\n\n\n<p>2. <span style=\\\"font-weight: 400;\\\">Contracts and Related Correspondence (including any proposal that resulted in the contract and all other supportive documentation) should be permanently retained.<\\\/span><\\\/p>\\n\n\n<p>3. <span style=\\\"font-weight: 400;\\\">\\u201cOrganization\\u201d records (minute books, signed minutes of the Board and all committees, corporate seals, articles of incorporation, Contribution records and annual corporate reports) as well as licenses, property insurance and permits should have a permanent retention. <\\\/span><span class=\\\"s1\\\"><br \\\/><\\\/span><\\\/p>\\n\n\n<p>4.<span style=\\\"font-weight: 400;\\\">It is also possible to destroy documents considered in the judgment of a valuable documents and have never been used\\u00a0 or modified for the last 5 years, only if these documents are subject to examination or review or were required in an ongoing legal proceeding, or Instructions\\\/regulations set by the Ministry of Finance decides to keep them longer.\\u00a0<\\\/span><span style=\\\"font-weight: 400;\\\">Destruction of those documents only after taking the necessary procedures to record their data or its summary.\\u00a0 <\\\/span><\\\/p>\\n\n\n<p><span class=\\\"s1\\\">\\u00a0<\\\/span><\\\/p>\\n\n\n<p>5. <span style=\\\"font-weight: 400;\\\">Electronic documents<\\\/span><span class=\\\"s1\\\">:<br \\\/><\\\/span><\\\/p>\\n\n\n<ul class=\\\"ul1\\\">\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Electronic Documents: including Microsoft Office Suite and PDF files. Retention also depends on the subject matter.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Electronic Mail: Not all email needs to be retained, depending on the subject matter, E-mail that needs to be saved should be either printed in hard copy and kept in the appropriate file, or downloaded to a computer file and kept electronically or on disk as a separate file.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Web Page Files: All workstations: Internet Browsers should be scheduled to delete Internet cookies once per month.<\\\/span><\\\/li>\\n<\\\/ul>\\n\n\n<p>6. <span style=\\\"font-weight: 400;\\\">Legal files and papers <\\\/span><span class=\\\"s1\\\">:<br \\\/><\\\/span><\\\/p>\\n\n\n<p><span style=\\\"font-weight: 400;\\\">Permanent retention of \\u201cOrganization\\u201d legal archive as follows:<\\\/span><\\\/p>\\n\n\n<ul>\\n\n\n<li style=\\\"list-style-type: none;\\\">\\n\n\n<ul>\\n\n\n<li style=\\\"list-style-type: none;\\\">\\n\n\n<ul>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Files of the judicial proceedings and the decisions of the preliminary and final judgments, decisions and orders of the courts, including all relevant files.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Legal notes and opinions issued by legal offices.<\\\/span><\\\/li>\\n<\\\/ul>\\n<\\\/li>\\n<\\\/ul>\\n<\\\/li>\\n<\\\/ul>\\n\n\n<p>7. <span style=\\\"font-weight: 400;\\\">Personnel records<\\\/span><span class=\\\"s1\\\">:<\\\/span><\\\/p>\\n\n\n<ul>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Employee Personnel file should have a permanent retention even after <\\\/span><span style=\\\"font-weight: 400;\\\">Termination of employee relationship with the \\u201cOrganization\\u201d<\\\/span><\\\/li>\\n<\\\/ul>\\n\n\n<ul>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Employment records (including individual attendance records, application forms, job or status change records, termination papers,\\u00a0 test results, training and qualification records) shall be retained as needed and for the necessary period according to \\u201cOrganization estimates.<\\\/span><\\\/li>\\n\n\n<li><span class=\\\"s1\\\"><span style=\\\"font-weight: 400;\\\">\\u00a0<\\\/span><span style=\\\"font-weight: 400;\\\">\\u201cOrganization\\u201d should retained for a period of 2 years all Job interview related documents (including written examinations, records, lists and all other documents relating to the exam). <\\\/span><\\\/span><\\\/li>\\n<\\\/ul>\\n\n\n<p>8. <span style=\\\"font-weight: 400;\\\">Records and documents The \\u201cOrganization\\u201d has the discretion to determine the time required to retain them and the discretionary authority is related to the continued need of the \\u201cOrganization\\u201d <\\\/span><span class=\\\"s1\\\">:<br \\\/><\\\/span><\\\/p>\\n\n\n<ul class=\\\"ul1\\\">\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Consultant's reports.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Policy and procedures manuals (Original \\\/ Copies)<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Annual reports.<\\\/span><\\\/li>\\n<\\\/ul>\\n\n\n<p>9. <span style=\\\"font-weight: 400;\\\">Document destruction procedures<\\\/span><span class=\\\"s1\\\">:<br \\\/><\\\/span><\\\/p>\\n\n\n<ul class=\\\"ul1\\\">\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Records must not be removed or destroyed before retention period expiration;\\u00a0<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Once records have been retained for the applicable period of time, set forth in the record retention<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Destruction of finance records shall be in accordance to budget and accounts procedures.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Destruction of financial and personnel-related documents and all paper documents will be accomplished by a method that prevents retrieval of this data.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Electronic data contained on all other media shall be destroyed by the physical destruction of that media.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Records must be destroyed securely and completely.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Recorded Destruction in formal documented processes, for data destruction within the \\\"Organization\\\".<\\\/span><\\\/li>\\n<\\\/ul>\"}}]},{\"name\":\"\",\"type\":\"headline\",\"props\":{\"title_element\":\"h3\",\"title_style\":\"h3\",\"title_decoration\":\"bullet\",\"text_align\":\"\",\"text_align_breakpoint\":\"\",\"text_align_fallback\":\"\",\"maxwidth\":\"\",\"margin\":\"medium\",\"animation\":\"\",\"visibility\":\"\",\"content\":\"<b>Information Dissemination Policy<\\\/b>\",\"title_color\":\"\",\"maxwidth_breakpoint\":\"\",\"block_align\":\"\",\"title_font_family\":\"\",\"position\":\"\",\"position_z_index\":\"\",\"block_align_breakpoint\":\"\",\"block_align_fallback\":\"\",\"css\":\".el-element {\\npadding-top: 60px; \\n    margin-top: -20px !important;\\n}\"}},{\"type\":\"grid\",\"props\":{\"show_title\":true,\"show_meta\":true,\"show_content\":true,\"show_image\":true,\"show_link\":true,\"grid_default\":\"1\",\"grid_medium\":\"\",\"filter_style\":\"tab\",\"filter_all\":true,\"filter_position\":\"top\",\"filter_align\":\"left\",\"filter_grid_width\":\"auto\",\"title_element\":\"h4\",\"title_align\":\"top\",\"title_grid_width\":\"1-3\",\"meta_style\":\"meta\",\"meta_align\":\"below-title\",\"icon_ratio\":4,\"image_align\":\"top\",\"image_grid_width\":\"1-2\",\"image_svg_color\":\"emphasis\",\"link_text\":\"Read more\",\"link_style\":\"default\",\"margin\":\"default\",\"item_animation\":\"\",\"grid_small\":\"\",\"grid_large\":\"\",\"grid_xlarge\":\"\",\"filter_margin\":\"\",\"title_display\":\"\",\"content_display\":\"\",\"panel_style\":\"\",\"panel_content_padding\":\"\",\"panel_size\":\"\",\"item_maxwidth\":\"\",\"title_style\":\"h4\",\"title_decoration\":\"\",\"title_color\":\"\",\"title_margin\":\"\",\"meta_color\":\"\",\"meta_margin\":\"\",\"content_style\":\"\",\"content_margin\":\"\",\"image_border\":\"\",\"image_box_shadow\":\"\",\"image_hover_box_shadow\":\"\",\"image_box_decoration\":\"\",\"icon_color\":\"\",\"image_margin\":\"\",\"link_type\":\"\",\"link_size\":\"\",\"link_margin\":\"\",\"text_align\":\"\",\"text_align_breakpoint\":\"\",\"text_align_fallback\":\"\",\"maxwidth\":\"\",\"maxwidth_breakpoint\":\"\",\"visibility\":\"\",\"block_align\":\"\",\"title_hover_style\":\"reset\",\"grid_column_gap\":\"\",\"grid_row_gap\":\"\",\"grid_divider\":false,\"filter_grid_column_gap\":\"\",\"filter_grid_row_gap\":\"\",\"filter_grid_breakpoint\":\"m\",\"title_grid_column_gap\":\"\",\"title_grid_row_gap\":\"\",\"title_grid_breakpoint\":\"m\",\"image_grid_column_gap\":\"\",\"image_grid_row_gap\":\"\",\"image_grid_breakpoint\":\"m\",\"title_font_family\":\"\",\"image_transition\":\"\",\"position\":\"\",\"position_z_index\":\"\",\"block_align_breakpoint\":\"\",\"block_align_fallback\":\"\"},\"children\":[{\"type\":\"grid_item\",\"props\":{\"title\":\"Introduction\",\"content\":\"\n\n<p class=\\\"p1\\\"><span style=\\\"font-weight: 400;\\\">This policy discuss the types of information that can be disseminated to internal and external groups, as well as the methods by which this information is disseminated. Moreover, this policy explains the specific type of information that will be disclosed and not to be disclosed.<\\\/span><\\\/p>\\n\n\n<ul>\\n\n\n<li><b>Information not to be disclosed<\\\/b><\\\/li>\\n<\\\/ul>\\n\n\n<ul>\\n\n\n<li style=\\\"list-style-type: none;\\\">\\n\n\n<ul class=\\\"ul1\\\">\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Personal information includes staff records, medical information, information on salary and benefits.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Financial information.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Legal, disciplinary or investigative matters; the concerned person shall be notified by official means.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Deliberative information including e-mail, notes, letters, memoranda, draft reports.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">All of the confidential information.<\\\/span><\\\/li>\\n<\\\/ul>\\n<\\\/li>\\n\n\n<li><b>Information to be disclosed in connection with other organizations<\\\/b><\\\/li>\\n<\\\/ul>\\n\n\n<ul>\\n\n\n<li style=\\\"list-style-type: none;\\\">\\n\n\n<ul class=\\\"ul1\\\">\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Initial project abstracts.<\\\/span><\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\"><span style=\\\"font-weight: 400;\\\">Any information\\u00a0 the \\u201cOrganization\\u201d deems necessary for dissemination<\\\/span><\\\/li>\\n<\\\/ul>\\n<\\\/li>\\n<\\\/ul>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Purpose\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">Is to ensure personal information and confidential information are protected from unauthorized use and disclosure and also to facilitate the identification of information to support routine disclosure and active dissemination of information. This policy was also set to protect the intellectual property of \\\"Organization\\\".<\\\/span><\\\/p>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Domain\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">This policy applies to all information produced, collected and stored by \\\"Organization\\\".<\\\/span><\\\/p>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Policy\",\"content\":\"\n\n<ol>\\n\n\n<li style=\\\"font-weight: 400;\\\">\\n\n\n<p><span style=\\\"font-weight: 400;\\\">Information which is considered unrestricted can be open to the public and all employees as well as Third Parties.\\u00a0<\\\/span><\\\/p>\\n<\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\">\\n\n\n<p><span style=\\\"font-weight: 400;\\\">Information which needs to be protected is accessed by authorized access such as employees, contractors and on a \\\"need-to-know\\\" basis for business related purposes. This access should be granted for a specific period required and set by higher level management.<\\\/span><\\\/p>\\n<\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\">\\n\n\n<p><span style=\\\"font-weight: 400;\\\">Confidential information is limited to individuals in a specific function, group or role. pre clearance based on position is required in order to access confidential information held by \\\"Organization\\\".<\\\/span><\\\/p>\\n<\\\/li>\\n\n\n<li style=\\\"font-weight: 400;\\\">\\n\n\n<p><span style=\\\"font-weight: 400;\\\">In term of restricted information where access is granted to limited named individuals based on job position.<\\\/span><\\\/p>\\n<\\\/li>\\n<\\\/ol>\\n\n\n<p>\\u00a0<\\\/p>\"}}]},{\"name\":\"\",\"type\":\"headline\",\"props\":{\"title_element\":\"h3\",\"title_style\":\"h3\",\"title_decoration\":\"bullet\",\"text_align\":\"\",\"text_align_breakpoint\":\"\",\"text_align_fallback\":\"\",\"maxwidth\":\"\",\"margin\":\"medium\",\"animation\":\"\",\"visibility\":\"\",\"content\":\"<b>Access to Information Policy<\\\/b>\",\"title_color\":\"\",\"maxwidth_breakpoint\":\"\",\"block_align\":\"\",\"title_font_family\":\"\",\"position\":\"\",\"position_z_index\":\"\",\"block_align_breakpoint\":\"\",\"block_align_fallback\":\"\",\"css\":\".el-element {\\npadding-top: 60px; \\n    margin-top: -20px !important;\\n}\"}},{\"type\":\"grid\",\"props\":{\"show_title\":true,\"show_meta\":true,\"show_content\":true,\"show_image\":true,\"show_link\":true,\"grid_default\":\"1\",\"grid_medium\":\"\",\"filter_style\":\"tab\",\"filter_all\":true,\"filter_position\":\"top\",\"filter_align\":\"left\",\"filter_grid_width\":\"auto\",\"title_element\":\"h4\",\"title_align\":\"top\",\"title_grid_width\":\"1-3\",\"meta_style\":\"meta\",\"meta_align\":\"below-title\",\"icon_ratio\":4,\"image_align\":\"top\",\"image_grid_width\":\"1-2\",\"image_svg_color\":\"emphasis\",\"link_text\":\"Read more\",\"link_style\":\"default\",\"margin\":\"default\",\"item_animation\":\"\",\"grid_small\":\"\",\"grid_large\":\"\",\"grid_xlarge\":\"\",\"filter_margin\":\"\",\"title_display\":\"\",\"content_display\":\"\",\"panel_style\":\"\",\"panel_content_padding\":\"\",\"panel_size\":\"\",\"item_maxwidth\":\"\",\"title_style\":\"h4\",\"title_decoration\":\"\",\"title_color\":\"\",\"title_margin\":\"\",\"meta_color\":\"\",\"meta_margin\":\"\",\"content_style\":\"\",\"content_margin\":\"\",\"image_border\":\"\",\"image_box_shadow\":\"\",\"image_hover_box_shadow\":\"\",\"image_box_decoration\":\"\",\"icon_color\":\"\",\"image_margin\":\"\",\"link_type\":\"\",\"link_size\":\"\",\"link_margin\":\"\",\"text_align\":\"\",\"text_align_breakpoint\":\"\",\"text_align_fallback\":\"\",\"maxwidth\":\"\",\"maxwidth_breakpoint\":\"\",\"visibility\":\"\",\"block_align\":\"\",\"title_hover_style\":\"reset\",\"grid_column_gap\":\"\",\"grid_row_gap\":\"\",\"grid_divider\":false,\"filter_grid_column_gap\":\"\",\"filter_grid_row_gap\":\"\",\"filter_grid_breakpoint\":\"m\",\"title_grid_column_gap\":\"\",\"title_grid_row_gap\":\"\",\"title_grid_breakpoint\":\"m\",\"image_grid_column_gap\":\"\",\"image_grid_row_gap\":\"\",\"image_grid_breakpoint\":\"m\",\"title_font_family\":\"\",\"image_transition\":\"\",\"position\":\"\",\"position_z_index\":\"\",\"block_align_breakpoint\":\"\",\"block_align_fallback\":\"\"},\"children\":[{\"type\":\"grid_item\",\"props\":{\"title\":\"Introduction\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">\\\"Organization\\\" will determine the extent to which security classification needs to be applied to information assets. The security classification of information assets should highlight what type of information can be viewed or accessed by members of \\\"Organization\\\" staff or external parties. The different levels of information particularly sensitive or confidential information will require higher level of authorization for access.\\u00a0 <\\\/span><\\\/p>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Purpose\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">The purpose of this policy is to limit the threat of losing or disclosing data that will affect the integrity, availability or confidentiality of data assets, by controlling the access to information with authorizations.<\\\/span><\\\/p>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Domain\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">This policy applies to all reports, research information, and supporting documentation originally produced or collected by \\\"Organization\\\".<\\\/span><\\\/p>\"}},{\"type\":\"grid_item\",\"props\":{\"title\":\"Policy\",\"content\":\"\\n\n\n<ul>\\n\n\n<li><b><span style=\\\"font-weight: 400;\\\">Authorized individuals only access current and complete information<\\\/span><\\\/b><\\\/li>\\n<\\\/ul>\\n\n\n<ul>\\n\n\n<li>\\n<span style=\\\"font-weight: 400;\\\">Authorized users have access to and can use information when required.\\u00a0<\\\/span>\\n<\\\/li>\\n<\\\/ul>\\n\n\n<ul>\\n\n\n<li>\\n<span style=\\\"font-weight: 400;\\\">Authorized individuals, entities or processes only access information and the value of intellectual property are protected as needed.<\\\/span>\\n<\\\/li>\\n<\\\/ul>\\n\n\n<p>\\u00a0<\\\/p>\"}}]},{\"type\":\"html\",\"props\":{\"id\":\"irc_footer\",\"content\":\"<base>\"},\"name\":\"Stop Sidebar element\"}]},{\"type\":\"column\",\"props\":{\"image_position\":\"center-center\",\"media_overlay_gradient\":\"\",\"vertical_align\":\"\",\"style\":\"\",\"text_color\":\"\",\"padding\":\"\"},\"children\":[{\"type\":\"wordpress_area\",\"props\":{\"layout\":\"stack\",\"breakpoint\":\"m\",\"content\":\"builder-1\",\"column_gap\":\"\",\"row_gap\":\"\",\"position\":\"\",\"position_z_index\":\"\",\"margin\":\"\",\"maxwidth\":\"\",\"maxwidth_breakpoint\":\"\",\"block_align\":\"\",\"block_align_breakpoint\":\"\",\"block_align_fallback\":\"\",\"text_align\":\"\",\"text_align_breakpoint\":\"\",\"text_align_fallback\":\"\",\"animation\":\"\",\"visibility\":\"\"}}]}]}]}],\"version\":\"1.22.8\",\"props\":[]} --><\/p>\n","protected":false},"excerpt":{"rendered":"<p>You can download the data protection policy as pdf by clicking on this link download Information Classification Policy Introduction It is essential for &#8220;Organization&#8221; to classify its information assets to help manage and protect it. The various departments at &#8220;Organization&#8221; have a multitude types of documents and data, each business unit or department should classify [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":3574,"parent":3668,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_acf_changed":false,"footnotes":""},"class_list":["post-3604","page","type-page","status-publish","has-post-thumbnail","hentry"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Data Privacy Policy - \u0627\u0644\u0647\u064a\u0626\u0629 \u0627\u0644\u0648\u0637\u0646\u064a\u0629 \u0644\u0623\u0645\u0646 \u0648\u0633\u0644\u0627\u0645\u0629 \u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/nissa.gov.ly\/en\/main-services\/data-privacy-policy\/\" \/>\n<meta property=\"og:locale\" content=\"ar_AR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Data Privacy Policy - \u0627\u0644\u0647\u064a\u0626\u0629 \u0627\u0644\u0648\u0637\u0646\u064a\u0629 \u0644\u0623\u0645\u0646 \u0648\u0633\u0644\u0627\u0645\u0629 \u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a\" \/>\n<meta property=\"og:description\" content=\"You can download the data protection policy as pdf by clicking on this link download Information Classification Policy Introduction It is essential for &#8220;Organization&#8221; to classify its information assets to help manage and protect it. The various departments at &#8220;Organization&#8221; have a multitude types of documents and data, each business unit or department should classify [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/nissa.gov.ly\/en\/main-services\/data-privacy-policy\/\" \/>\n<meta property=\"og:site_name\" content=\"\u0627\u0644\u0647\u064a\u0626\u0629 \u0627\u0644\u0648\u0637\u0646\u064a\u0629 \u0644\u0623\u0645\u0646 \u0648\u0633\u0644\u0627\u0645\u0629 \u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a\" \/>\n<meta property=\"article:modified_time\" content=\"2020-04-19T20:38:32+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/nissa.gov.ly\/gavedug\/placeholder.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1153\" \/>\n\t<meta property=\"og:image:height\" content=\"645\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"\u0648\u0642\u062a \u0627\u0644\u0642\u0631\u0627\u0621\u0629 \u0627\u0644\u0645\u064f\u0642\u062f\u0651\u0631\" \/>\n\t<meta name=\"twitter:data1\" content=\"11 \u062f\u0642\u064a\u0642\u0629\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/nissa.gov.ly\\\/en\\\/main-services\\\/data-privacy-policy\\\/\",\"url\":\"https:\\\/\\\/nissa.gov.ly\\\/en\\\/main-services\\\/data-privacy-policy\\\/\",\"name\":\"Data Privacy Policy - \u0627\u0644\u0647\u064a\u0626\u0629 \u0627\u0644\u0648\u0637\u0646\u064a\u0629 \u0644\u0623\u0645\u0646 \u0648\u0633\u0644\u0627\u0645\u0629 \u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/nissa.gov.ly\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/nissa.gov.ly\\\/en\\\/main-services\\\/data-privacy-policy\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/nissa.gov.ly\\\/en\\\/main-services\\\/data-privacy-policy\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/nissa.gov.ly\\\/wp-content\\\/uploads\\\/placeholder.png\",\"datePublished\":\"2020-01-23T12:32:03+00:00\",\"dateModified\":\"2020-04-19T20:38:32+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/nissa.gov.ly\\\/en\\\/main-services\\\/data-privacy-policy\\\/#breadcrumb\"},\"inLanguage\":\"ar\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/nissa.gov.ly\\\/en\\\/main-services\\\/data-privacy-policy\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"ar\",\"@id\":\"https:\\\/\\\/nissa.gov.ly\\\/en\\\/main-services\\\/data-privacy-policy\\\/#primaryimage\",\"url\":\"https:\\\/\\\/nissa.gov.ly\\\/wp-content\\\/uploads\\\/placeholder.png\",\"contentUrl\":\"https:\\\/\\\/nissa.gov.ly\\\/wp-content\\\/uploads\\\/placeholder.png\",\"width\":1153,\"height\":645},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/nissa.gov.ly\\\/en\\\/main-services\\\/data-privacy-policy\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/nissa.gov.ly\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Main services\",\"item\":\"https:\\\/\\\/nissa.gov.ly\\\/en\\\/main-services\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Data Privacy Policy\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/nissa.gov.ly\\\/#website\",\"url\":\"https:\\\/\\\/nissa.gov.ly\\\/\",\"name\":\"\u0627\u0644\u0647\u064a\u0626\u0629 \u0627\u0644\u0648\u0637\u0646\u064a\u0629 \u0644\u0623\u0645\u0646 \u0648\u0633\u0644\u0627\u0645\u0629 \u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/nissa.gov.ly\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/nissa.gov.ly\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"ar\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/nissa.gov.ly\\\/#organization\",\"name\":\"\u0627\u0644\u0647\u064a\u0626\u0629 \u0627\u0644\u0648\u0637\u0646\u064a\u0629 \u0644\u0623\u0645\u0646 \u0648\u0633\u0644\u0627\u0645\u0629 \u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a\",\"url\":\"https:\\\/\\\/nissa.gov.ly\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"ar\",\"@id\":\"https:\\\/\\\/nissa.gov.ly\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/nissa.gov.ly\\\/wp-content\\\/uploads\\\/apple-touch-icon.png\",\"contentUrl\":\"https:\\\/\\\/nissa.gov.ly\\\/wp-content\\\/uploads\\\/apple-touch-icon.png\",\"width\":180,\"height\":180,\"caption\":\"\u0627\u0644\u0647\u064a\u0626\u0629 \u0627\u0644\u0648\u0637\u0646\u064a\u0629 \u0644\u0623\u0645\u0646 \u0648\u0633\u0644\u0627\u0645\u0629 \u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a\"},\"image\":{\"@id\":\"https:\\\/\\\/nissa.gov.ly\\\/#\\\/schema\\\/logo\\\/image\\\/\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Data Privacy Policy - \u0627\u0644\u0647\u064a\u0626\u0629 \u0627\u0644\u0648\u0637\u0646\u064a\u0629 \u0644\u0623\u0645\u0646 \u0648\u0633\u0644\u0627\u0645\u0629 \u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/nissa.gov.ly\/en\/main-services\/data-privacy-policy\/","og_locale":"ar_AR","og_type":"article","og_title":"Data Privacy Policy - \u0627\u0644\u0647\u064a\u0626\u0629 \u0627\u0644\u0648\u0637\u0646\u064a\u0629 \u0644\u0623\u0645\u0646 \u0648\u0633\u0644\u0627\u0645\u0629 \u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a","og_description":"You can download the data protection policy as pdf by clicking on this link download Information Classification Policy Introduction It is essential for &#8220;Organization&#8221; to classify its information assets to help manage and protect it. The various departments at &#8220;Organization&#8221; have a multitude types of documents and data, each business unit or department should classify [&hellip;]","og_url":"https:\/\/nissa.gov.ly\/en\/main-services\/data-privacy-policy\/","og_site_name":"\u0627\u0644\u0647\u064a\u0626\u0629 \u0627\u0644\u0648\u0637\u0646\u064a\u0629 \u0644\u0623\u0645\u0646 \u0648\u0633\u0644\u0627\u0645\u0629 \u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a","article_modified_time":"2020-04-19T20:38:32+00:00","og_image":[{"width":1153,"height":645,"url":"https:\/\/nissa.gov.ly\/gavedug\/placeholder.png","type":"image\/png"}],"twitter_card":"summary_large_image","twitter_misc":{"\u0648\u0642\u062a \u0627\u0644\u0642\u0631\u0627\u0621\u0629 \u0627\u0644\u0645\u064f\u0642\u062f\u0651\u0631":"11 \u062f\u0642\u064a\u0642\u0629"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/nissa.gov.ly\/en\/main-services\/data-privacy-policy\/","url":"https:\/\/nissa.gov.ly\/en\/main-services\/data-privacy-policy\/","name":"Data Privacy Policy - \u0627\u0644\u0647\u064a\u0626\u0629 \u0627\u0644\u0648\u0637\u0646\u064a\u0629 \u0644\u0623\u0645\u0646 \u0648\u0633\u0644\u0627\u0645\u0629 \u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a","isPartOf":{"@id":"https:\/\/nissa.gov.ly\/#website"},"primaryImageOfPage":{"@id":"https:\/\/nissa.gov.ly\/en\/main-services\/data-privacy-policy\/#primaryimage"},"image":{"@id":"https:\/\/nissa.gov.ly\/en\/main-services\/data-privacy-policy\/#primaryimage"},"thumbnailUrl":"https:\/\/nissa.gov.ly\/gavedug\/placeholder.png","datePublished":"2020-01-23T12:32:03+00:00","dateModified":"2020-04-19T20:38:32+00:00","breadcrumb":{"@id":"https:\/\/nissa.gov.ly\/en\/main-services\/data-privacy-policy\/#breadcrumb"},"inLanguage":"ar","potentialAction":[{"@type":"ReadAction","target":["https:\/\/nissa.gov.ly\/en\/main-services\/data-privacy-policy\/"]}]},{"@type":"ImageObject","inLanguage":"ar","@id":"https:\/\/nissa.gov.ly\/en\/main-services\/data-privacy-policy\/#primaryimage","url":"https:\/\/nissa.gov.ly\/gavedug\/placeholder.png","contentUrl":"https:\/\/nissa.gov.ly\/gavedug\/placeholder.png","width":1153,"height":645},{"@type":"BreadcrumbList","@id":"https:\/\/nissa.gov.ly\/en\/main-services\/data-privacy-policy\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/nissa.gov.ly\/"},{"@type":"ListItem","position":2,"name":"Main services","item":"https:\/\/nissa.gov.ly\/en\/main-services\/"},{"@type":"ListItem","position":3,"name":"Data Privacy Policy"}]},{"@type":"WebSite","@id":"https:\/\/nissa.gov.ly\/#website","url":"https:\/\/nissa.gov.ly\/","name":"\u0627\u0644\u0647\u064a\u0626\u0629 \u0627\u0644\u0648\u0637\u0646\u064a\u0629 \u0644\u0623\u0645\u0646 \u0648\u0633\u0644\u0627\u0645\u0629 \u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a","description":"","publisher":{"@id":"https:\/\/nissa.gov.ly\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/nissa.gov.ly\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"ar"},{"@type":"Organization","@id":"https:\/\/nissa.gov.ly\/#organization","name":"\u0627\u0644\u0647\u064a\u0626\u0629 \u0627\u0644\u0648\u0637\u0646\u064a\u0629 \u0644\u0623\u0645\u0646 \u0648\u0633\u0644\u0627\u0645\u0629 \u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a","url":"https:\/\/nissa.gov.ly\/","logo":{"@type":"ImageObject","inLanguage":"ar","@id":"https:\/\/nissa.gov.ly\/#\/schema\/logo\/image\/","url":"https:\/\/nissa.gov.ly\/gavedug\/apple-touch-icon.png","contentUrl":"https:\/\/nissa.gov.ly\/gavedug\/apple-touch-icon.png","width":180,"height":180,"caption":"\u0627\u0644\u0647\u064a\u0626\u0629 \u0627\u0644\u0648\u0637\u0646\u064a\u0629 \u0644\u0623\u0645\u0646 \u0648\u0633\u0644\u0627\u0645\u0629 \u0627\u0644\u0645\u0639\u0644\u0648\u0645\u0627\u062a"},"image":{"@id":"https:\/\/nissa.gov.ly\/#\/schema\/logo\/image\/"}}]}},"_links":{"self":[{"href":"https:\/\/nissa.gov.ly\/batisur\/wp\/v2\/pages\/3604","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/nissa.gov.ly\/batisur\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/nissa.gov.ly\/batisur\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/nissa.gov.ly\/batisur\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/nissa.gov.ly\/batisur\/wp\/v2\/comments?post=3604"}],"version-history":[{"count":0,"href":"https:\/\/nissa.gov.ly\/batisur\/wp\/v2\/pages\/3604\/revisions"}],"up":[{"embeddable":true,"href":"https:\/\/nissa.gov.ly\/batisur\/wp\/v2\/pages\/3668"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/nissa.gov.ly\/batisur\/wp\/v2\/media\/3574"}],"wp:attachment":[{"href":"https:\/\/nissa.gov.ly\/batisur\/wp\/v2\/media?parent=3604"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}