Article 54 – Access Control Policy
49110.9 Security Variance Process
-
If compliance is not feasible or is technically impossible, if existing policy currently in place already meets these requirements, or if deviation from this policy is necessary to support a business function, the respective manager shall formally request a security variation as defined by the department ISOInformation Security Officer.