Laserfiche WebLink
DocuSign Envelope ID: 35E2E030-AE55-4B92-80F9-06AD173830C7 <br />Everett WA PD <br />NDA #243 <br />10/21/2020 <br />Page 4 <br />SCHEDULE A <br />AHJ INFORMATION SECURITY REQUIREMENTS <br />Data Privacy and Security <br />(a) Definitions. <br />"AHJ" means Authority Having Jurisdiction and incorporates any AHJ-Authorized Third -Party Administrators <br />"Customer Data' means all ADT Confidential Information entered into documentation software or equipment by or on behalf <br />of ADT; (a) that is data supporting or derived from the provision of Services to ADT End Users or (b) relative to ADT's <br />customers, and information derived from such information, including as stored in or processed through AHJ's equipment or <br />software, or that of its Authorized Third Party Administrator(s). <br />(b) Security. <br />AHJ, and its Authorized Third Party Administrator(s) (`AHJ"), will maintain and enforce safety and physical security procedures <br />with respect to its access to and maintenance of Customer Data that are (i) at least equal to industry standards for such types <br />of service providers, (ii) in accordance with reasonable ADT security requirements, and (iii) which provide reasonably <br />appropriate technical and organizational safeguards against accidental or unlawful destruction, Toss, alteration or unauthorized <br />disclosure or access of Customer Data and all other data owned by ADT and accessible by AHJ under this NDA. Without <br />limiting the generality of the foregoing, AHJ will take all reasonable measures to secure and defend its location and equipment <br />against `hackers' and others who may seek, without authorization, to modify or access AHJ systems or the information found <br />therein without the consent of ADT AHJ will periodically test its systems for potential areas where security could be <br />breached AHJ will report to ADT immediately any breaches of security or unauthorized access to AHJ systems that AHJ <br />detects or becomes aware of. AHJ will use diligent efforts to remedy such breach of security or unauthorized access in a <br />timely manner and deliver to ADT a root cause assessment and future incident mitigation plan with regard to any breach of <br />security or unauthorized access affecting Customer Data. <br />(c) Storage of Customer Data. <br />All Customer Data must be stored in a physically and logically secure environment that protects it from unauthorized access, <br />modification, theft, misuse and destruction. Further, AHJ will maintain an adequate level of data security controls, including, <br />but not limited to logical access controls including user sign -on identification and authentication, data access controls (e g. <br />password protection of AHJ applications data files and libraries), accountability tracking, anti -virus software, secured printers, <br />restricted download to disk capability and a provision for system backup <br />