ASSOCIATED DRATA CONTROL
This test is part of the Policies Cover Employee Confidentiality Regarding Customer Data control that ensures your company policies require employees to keep any information they learn, while handling customer data, absolutely confidential.
WHAT TO DO IF A TEST FAILS
If Drata finds that your company policies are either not available or do not reflect the necessary requirements to ensure customer data is kept confidential the test will fail.
To remediate a failed test, you will need to make sure that the appropriate policies are uploaded to Drata and contain specific requirements for ensuring confidentiality when handling customer data. These policies will also need to be approved by an owner for the test to succeed.
STEPS TO REMEDIATE
Navigate to the Policy Center.
Add either the 'Acceptable Use Policy' and/or 'Data Protection Policy' and ensure that the newly added policy(s) are approved.
HELPFUL RESOURCES