Why we need to focus on data security?
Regulatory compliance requirements
Business operation risks
Market competition
Trust and responsibility
Which of the following are Mars Approved Tools?
One Drive
Share Point
Personal Wechat
MAX
What is NOT considered Confidential Information?
Business and product plans
Manufacturing methods, ingredients, and formulas
Patents and trademarks
Financial data
Which method is appropriate for protecting Confidential Information outside the office environment?
Take certain calls from another room behind closed doors or from a location where you’re afforded more privacy
Leave your Mars issued laptop unattended, unlocked and no password protected
Throw documents containing Mars information directly without shredding
Work documents can be easily seen or read by any visitors who is not a Mars associate
What impacts may inappropriate disclosure of information bring?
Extreme damage and irreparable harm to Mars.
You could compromise the legal rights the company would have in intellectual property rights.
In some instances, you could be exposed to civil and criminal legal fines.
No negative impact.
What does Confidential Information relating to our technology include?
Software
Performance data
IT architecture diagrams and configurations
Supplier and customer lists
What does Confidential Information relating to our associates include?
Payroll and personnel records
Passport numbers
Research data
Product pipeline information
What methods may cause inappropriate disclosure of confidential information?
Standard information security practices
Accidentally or intentionally sending confidential information to an outside party
A third party overhearing a discussion on business matters
An associate transferring Confidential Information from a work computer onto a personal device
What are the principle of least privilege?
View rather than edit
Share the whole folder rather than file
Share to individual rather than multiple groups
Share with expiration date rather than permanent access
Which ways are correct when you transact daily operations?
Share attachments directly when you want to share to others via email
Encrypt confidential file
Grant the same Share Point access to interns as associates do
Review the access termly and update the access granting