Laserfiche WebLink
d <br />e <br />f <br />Special Terms and Conditions <br />authentication mechanisms which provide equal or greater security, such as.biometrics or smart <br />cards, Data on disks mounted to such."ru"-o-tr.ibe located in an areawhich is accessible only <br />to authorized personnel, with access .onttott"U tniough use of a key, card key' combination lock' or <br />comparable mechanism' <br />For DSHS Confidential lnformation stored on these disks, deleting unneedeo Da!3 is sufficient as <br />long as the disks l."rnrin in a secure Area and otherwise meet the requirements listed in the above <br />paragraph. oestructiJn oitn" o"tt, as outtineo below in Section 8 Data Disposition' may be <br />deferred untilthe disks are retired, replaced, or otherwise taken out of the secure Area' <br />Optical discs (GDs or DVDs) in localworkstation optical disc drives' Data provided by DSHS <br />on optical dlscs whiclr *itl t * used in localworl<station optical disc clrives and which will not be <br />iransported out of a Secure Area' When not in use for the contracted purpose' such discs must be <br />Stored in a Secure nr"a. Worf<stations wnicn access DSHS Data on optical discs must be located <br />in an area which is accessible only to "utf,oiiz"J <br />per"onnel, with access controlled through use of a <br />["V, ""Jr."y, combination lock, or comparable mechanism' <br />Opticaldiscs (CDs or DVDs) in drives or jukeboxes.attached to servers' Data provided by <br />DSHS on optical Oiscs wfrlcy, *itt n" attachei to network servers and which will not be transported <br />out of a secure nrea.-Rccess to Data on tnese discs will be restricted to Authorized Users through <br />the use of access controi iists wlrich will grant access only afier the Authortzed User has <br />authentlcated to the network using a unique User lD and Hardened Password or other <br />authentication mechanisms which provide <br />"quir <br />o1" greater s.ecurity, such as.biometrics or smart <br />cards. Data on discs attached to such t"tl-i. tr.ibe located in an area which is accessible only <br />to authorized personnel, with acces= controlled through use of a key' card key' combination lock' or <br />comparable mechanism. <br />Paper documents. Any paper records must be protected by storing the records in a secure Area <br />which is only accessible to authorized personnel" When not in use,iuch records must be stored in <br />a Secure Area. <br />Remote Access. Access io and Use of the Data over the state Governmental Network (sGN) or <br />Secure Access Wasfringion-(aAry will be co*iolted by DSHS staff who will issue authentication <br />credentials (e.g. a Unique User lD anO larOenuJ puss*orO) to Authorized Users on Contractor's <br />staff. contractor will notifu DSHS staff immediately whenever an Authorized User in possession of <br />such credentials is terminated or otherwise ieaves'the employ of the Contractor' and whenever an <br />Authorized User's Ouii"t "n"tg" such that the Authorized User no longer requires access to <br />perform work for this Contract. <br />Data storage on portable devices or media' <br />(1) Except where otherwise specified herein, DSHS Data shallnot be stored by the contractor on <br />portable devices oi t"ai" unless speciticalty authorized within the terms and conditions of the <br />Contract. ff so "uinoited, <br />the Data shall be given the following protections: <br />(a) EncryPt the Data. <br />(b) control access to devices with a Unique User lD and Hardened Password or stronger <br />authenticationmethodsuchasaphysicaltokenorbiometrics. <br />(c) Manually lock devices whenever they are left u.nattended and set devices to lock <br />automaticallyafteraperiodofinactivity,ifthisfeatureisavailable,Maximumperiodof <br />inactivitY is 20 minutes. <br />DSHS Central Contract Services <br />ailtcf county Program Agreement (10-31-201 7) <br />Page 20