16. I will only access or use systems or devices I am authorized to access, and will not demonstrate the operation or function of systems or devices to unauthorized individuals.
17. I will not attempt to bypass Company security controls.
18. I understand that I will be assigned a unique identifier (i.e., 3-4 User ID) to track my access and use of Company systems and that the identifier is associated with my personal data provided as part of the initial and/or periodic credentialing and/or employment verification.
19. In connection with my Engagement, I will never:
a. disclose or share user credentials (e.g., password, SecurID card, Tap n Go badge, etc.), PINs, access codes, badges, or door lock codes;
b. use another individual’s, or allow another individual to use my, user credentials (e.g., 3-4 User ID and password, SecurID card, Tap n Go badge, etc.) to access or use a Company computer system or device;
c. allow a non-authorized individual to access a secured area (e.g., hold the door open, share badge or door lock codes, and/or prop the door open);
d. use tools or techniques to break, circumvent or exploit security measures;
e. connect unauthorized systems or devices to the Company network; or
f. use software that has not been licensed and approved by the Company.
20. I will practice good workstation security measures such as locking up media when not in use, using screen savers with passwords, positioning screens away from public view, and physically securing workstations while traveling and working remotely.
21. I will immediately notify my manager, Facility Information Security Official (FISO), Director of 4 Information Protection & Security Information Security Assurance (DISA), Facility Privacy Official (FPO), Ethics and Compliance Officer (ECO), or Facility or Corporate Client Support Services (CSS) help desk or if involving the United Kingdom, the Data Protection Officer (DPO), Information Governance Manager, Caldicott Guardian, Heads of Governance (HoG), Division Chief Information Security Officer (CISO) if:
a. my user credentials have been seen, disclosed, lost, stolen, or otherwise compromised;
b. I suspect media with Confidential Information has been lost or stolen;
c. I suspect a virus or malware infection on any system;
d. I become aware of any activity that violates this Agreement or any Company privacy or security policies; or
e. I become aware of any other incident that could possibly have any adverse impact on Confidential Information or Company systems.