|
Telco Traid
Comunity Credit Union Security Policy
Security
NCUA Regulations regarding security, Part 748, requires that
credit unions have an established and documented security program for protection
from robberies, burglaries, and embezzlement. This regulation was recently
ammended, requiring individual credit union security programs to include
policies for safeguarding member information. Credit unions are required to be
in compliance with the amended portion of the regulation by July 1st,
2001.
Credit unions are also required to verify, by a contractual
agreement, that service providers have appropriate member information security
policies in place. Credit unions have the right to obtain a copy of the Member
Information Security Policy from each of their service providers.
Telco Triad Community Credit Union is a service provider for
our members. We frequently have access to confidential member information.
Telco Triad Community Credit Union enforces strict operational procedures
intended to safeguard our member’s information from access by unauthorized
parties. This document is intended to provide the reader with detailed
information regarding our internal security policies as they relate to
safeguarding confidential member information.
It may be necessary to make changes or amendments to this
policy from time to time. Telco Triad Community Credit Union reserves the right
to make changes to this policy at any time without prior notice to our members
or employees. Telco Triad Community Credit Union will provide the current
version of this policy to our members upon request, and the current version of
the policy will also be maintained at the www.telcotriad.org website under the
"About Telco Triad" section.
Current/Pending Status
As part of the process for maintaining the Telco Triad Community Credit Union
Member Information Security Policy, an assessment of our current status is
conducted on a consistent and on-going basis. This status research will
concentrate on the following three areas:
·
Identified the internal and external security threats that could
result in the destruction, misuse, unauthorized disclosure, or unauthorized
alteration of member information.
·
Evaluated the potential risk to member information based upon the
threats identified.
·
Assessed whether existing policies and procedures are sufficient
to limit identified risk.
Telco Triad Community Credit Union’s status research will
involve all departments and groups. Each department and group will provide the
following information:
·
The types of member information to which the employee and Telco
Triad Community Credit Union has access.
·
The methods of access to the member information.
·
What controls exist to minimize potential exposure of member
information to unauthorized persons.
·
What policies and procedures are in place for protecting member
information.
Based upon the information to be collected and industry
standards and third pary IT assessments the policies in this document have been
adopted. In general, the policies in this document are designed to:
·
Ensure that member information is secure and kept confidential.
·
Protect member information against identified threats.
·
Protect against unauthorized access of member information that
could result in the damage or misuse of that information.
Back To Telco Home Page
|