Skip to main content

Questions 1.12 (e.g MAIN.1.12) ask about "background checks" on employees. Can you clarify what is meant by this?

Ce contenu est uniquement disponible en : English

"Background checks" would refer to regular, typically annual, security screening of staff with access to sensitive data or systems, especially systems holding personally identifiable information.

If annual background checks or security screenings are not performed, please explain your company's ongoing monitoring and control procedures that guarantee that employees with access to sensitive data or systems have not become a threat to the organization since their last verification.

If an applicant answers "No", to any question with a yes/no answer, the applicant will be given the opportunity to provide an explanation, describing what process they follow. A "Yes" answer would give the applicant an automatic pass, so an assessment will be looking for explanations that come as close to equivalence with the requirement being asked for.