Security Patch Policy
Purpose
The purpose of this policy is to provide the ACS Technologies Group, Inc. ("ACST") IT department with specific standards for keeping systems properly patched against security vulnerabilities. Applicable security patches need to be applied in a timely manner to properly protect information assets from newly discovered system vulnerabilities.
Scope and Applicability
This policy applies to all ACST facilities and any individual using ACST sensitive information resources.
Policy
The IT department is responsible for ensuring that all applicable security patches are properly communicated, tested, and installed in a timely manner. At a minimum, patches are to be reviewed and installed on a quarterly basis.
Enforcement
Any employee found to have violated this policy may be subject to corrective action, up to and including termination of employment. Service Providers in violation of this policy may be subject to financial penalties, up to and including termination of contract.