audit rights dpa residency · Privacy Policy
ProSights policy finding
“ Authority. The Chief Technology Officer (CTO) is authorized by the Board to implement and enforce privacy and security programs. Management reporting. The team issues quarterly reports to executive leadership covering audit results, incidents, risk assessments, and remediation status. Monitoring & audits. We conduct annual penetration tests, routine vulnerability scanning, centralized logging/SIEM, and track findings to closure. Requests & referrals. All requests for personal information (from individuals, law enforcement, media, or others) are referred to trained personnel via support@prosights.co; employees and contractors complete annual security & privacy training. Suspicious attempts. Employees must report attempted social engineering or unauthorized PI requests to support@prosights.co immediately; events are logged for three months. Identity & access governance. Role-based access, MFA, least privilege, quarterly access reviews, segregation of duties, and centralized logging.”
- Document
- Privacy Policy
- Captured
- 2026-09-25
- Location
- § 14 (GOVERNANCE & ACCOUNTABILITY)
- Snapshot SHA-256
- f80277babf7cbcb49e258ff753e45cb02b25a696c26e44cfe706891398305f84
Informational only, not legal advice. Terms change; verify the source and capture date.