Article 46 – Information Systems Risk Management
49030.9 Security Variance Process
Revised June 17, 2026-
If compliance is not feasible, or if deviation from this policy is necessary to support a business function, the respective manager shall formally request a security variance as defined by the ISOInformation Security Officer.the ISOInformation Security Officer.