Onsite Consulting

iCAP On Location

information Compliance and Awareness Program – On Location

A more traditional consulting approach delivered at your place of business. Certified Identity Theft Risk Management Consultants facilitate a risk management process with your appointed Information Security Officer to limit liability in the collection, handling, storage, and destruction of confidential and sensitive information (CSI).

Objectives:

An operational approach designed to assess and reduce the risk of fraud, theft, or loss during the collection, handling, storage, and destruction of CSI in the workplace.


Onsite Consulting

Highlights:

Evaluate: Information Security Officer Briefing

An Identity Theft Loss Prevention consultant will conduct an Information Security Officer briefing. This includes:

  • A discussion of Information Security Officer responsibilities.
  • A risk assessment of current CSI management.

Assist: Confidential and Sensitive Information Policy Recommendations

IDTLP will provide guidance materials for the handling of CSI to incorporate into the overall security policy, including a plan for security incidents.

Observe: Third Eye Walkthrough

IDTLP will perform an informal audit of the workplace with the Information Security Officer and make recommendations to limit risk exposure.

Challenge: Social Engineering Vulnerability Exercises

IDTLP consultants will conduct social engineering vulnerability exercises to test current security measures.

Educate: Mandatory Training for Employees

IDTLP will facilitate mandatory training meetings with employees on identity theft awareness and workplace compliance issues. They will cover:

  • The scope of identity theft.
  • The involvement of the Federal Trade Commission.
  • Best practice guidance in six critical areas when handling sensitive information.

Support: Necessary Documentation

IDTLP will provide recommended documentation for the compliance process including:

  • Information Security Officer Acknowledgement
  • Mandatory Employee Meeting Notice and Payroll Stuffers.
  • Use of Confidential Information and Non-Disclosure Agreement.
  • Guidance materials for the handling of CSI to incorporate into the overall security policy.