Department of Corrections and Rehabilitation - Operations Manual

Chapter 4 – Information Technology

Article 44 – General Information

View All Sections >

49010.6.2 Incident Reporting Requirements

  • It is the responsibility of all departmental employees to report all incidents that would place the Department’s information assets at risk. It is the policy of the Department that the following incidents shall be reported through the chain of command to the departmental ISOInformation Security Officer:

    • Any incidents involving unauthorized access to automated data, automated files, or data bases.

    • Any incident involving the unauthorized modification, destruction or loss of automated data, automated files, or data bases.

    • Any incident involving a virus, worm, or other such computer contaminant (see also DOMDepartment Operations Manual 41010).

    • Any incident involving the unauthorized use of computer equipment, automated data, automated files, or data bases.

    • Any incident involving the misuse of the information assets of the Department.