Flink provides Employees with Information Technology (IT) resources that facilitate job performance. The purpose of this policy is to define standards, procedures, and restrictions that regulate the use of said IT resources in order to protect the integrity of Flinkā technology infrastructure and data.
A breach of this policy may result in loss of information, damage to critical applications, loss of revenue, and/or damage to Flinkā public image.
Scope
This policy applies to:
Flink-owned devices capable of storing Flinkā data, especially laptops and smartphones (hereinafter, the āDevice(s)ā).
All Employees, including full and part-time employees, contractors, freelancers, and other agents who may use the aforementioned Devices.
General
It is Flinkā policy to provide Employees with company-owned devices that are necessary for their job functions. Therefore, the use of personal devices to work with, back up, store, and otherwise access any Flink-related data is strictly forbidden, unless previously communicated and in accordance with Flinkā Bring Your Own Device Policy.
The single exception is the use of an Employeeās Dual SIM personal smartphone, which shall be allowed provided the Employee agrees to strict compliance with Flinkā Bring Your Own Device Policy.
Issuing the device
Prior to starting to use a Flink-owned device, the Flink IT Department will register it in their Asset Inventory Management System. This record includes which device and to whom it is assigned, the use for which the device has been allocated, as well as the software and hardware that are required by the Employee including their serial numbers, for warranty and loss purposes.
If any Employee foresees the need to use an advanced or otherwise non-standard device model based on the requirements of the role or position entrusted by Flink, a hardware request ticket should be raised, explaining the specific needs and providing an explanation of the motives.
Device Use Guidelines:
Employees should NOT attempt to install unlicensed or inappropriate software/hardware or change the system configuration including network settings.
Employees are not permitted to store any company data or sensitive information on external storage devices (e.g., USB drives, portable hard drives, etc.). All company data must remain within approved and secure storage systems to protect it from unauthorized access or data breaches.
Employees are expected to protect laptops, equipment and accessories from damage and theft.
Employees will provide access to any laptop computer or accessories they have been assigned upon Flinkās request.
ā
ā
Procedures for Laptop Physical Security
All employees must take the following precautions to ensure the physical security of Flink laptops:
When not in use, the laptop must be locked with a password and caution taken when entering any company passwords on the device.
Store the laptop in a locked cabinet or desk when not in use.
Do not leave your laptop unattended. If it is necessary to leave your laptop in your vehicle, then ensure the car and laptop are both locked and not in view.
When using the laptop in public areas, do not leave it unattended for any length of time.
During travel:
Do not pack your laptop in checked luggage.
Store the laptop in a hotel room safe or locked suitcase when not in the room.
āLoss & Theft
A police report needs to be created for the Lost/stolen device. The serial number or IMEI of the device will be requested and you can ask IT for the details. This police report should then be sent to this email address: [email protected]. Find the policy āHow to report Lost/Stolen IT hardwareā.
The IT department will, among other things, reset your password and block all access to network resources, including e-mail, until the moment when you can change your password.
Flinkā DPO and/or IT team will contact you to determine the nature and scope of any compromised Flinkā personal or confidential data.
Enforcement
Flink takes security very seriously to protect our users, assets and data. Flink could take appropriate actions in case of violating the company policy.