Policies

Codesplice Acceptable Usage Policy

Based on the current Codesplice Acceptable Usage Policy.

This Acceptable Usage Policy covers the security and use of all Codesplice Ltd information and IT equipment, including email, internet, voice and mobile IT equipment.

This policy applies to Codesplice Ltd employees, contractors and agents, and to information relating to Codesplice Ltd business activities and other organisations with whom Codesplice deals.

Use of Resources

Access to Codesplice Ltd IT systems is controlled by user IDs, passwords and/or tokens. User IDs and passwords must be uniquely assigned to named individuals, who are accountable for actions on Codesplice IT systems.

  • Do not allow anyone else to use your credentials.
  • Do not leave accounts logged in on unattended or unlocked computers.
  • Do not use another person's user ID or password.
  • Do not perform unauthorised changes to Codesplice systems or information.
  • Do not access data that you are not authorised to use.
  • Do not store Codesplice data on unauthorised equipment.
  • Do not send unprotected sensitive or confidential information externally.
  • Do not make commitments on behalf of Codesplice unless authorised.
  • Do not infringe copyright, database rights, trademarks or other intellectual property.

Device Usage

The following controls must be applied on company devices.

  • Computers must be logged off, locked or protected with a password-controlled screen lock when unattended.
  • Confidential material must not be left unattended.
  • Business-related printed matter must be shredded or disposed of securely.
  • Remote working must follow Codesplice remote working policy.
  • Equipment and media taken off-site must not be left unattended in public places or visible in vehicles.
  • Laptops must be carried as hand luggage when travelling.
  • Mobile devices must be protected with at least a password or PIN and encryption where available.

Mobile Storage Devices

Mobile storage devices such as memory sticks, CDs, DVDs and removable hard drives must only be used when network connectivity is unavailable or there is no other secure transfer method.

Only Codesplice-authorised mobile storage devices with encryption enabled may be used for sensitive or confidential data.

Software and Viruses

Employees must use only software authorised by Codesplice Ltd on company computers and in accordance with supplier licensing agreements.

Employees must not store personal files such as music, video, photographs or games on Codesplice IT equipment.

Codesplice uses centralised automated virus detection and updates. Employees must not remove or disable antivirus software or attempt to clean infected files except through approved procedures.

Termination of Contract

All Codesplice equipment and data, including laptops, mobile devices, telephones, USB memory devices and CDs/DVDs, must be returned at termination of contract.

Codesplice data or intellectual property developed or gained during employment remains the property of Codesplice and must not be retained beyond termination or reused for any other purpose.

Monitoring and Filtering

Data created and stored on Codesplice computers is the property of Codesplice Ltd. IT system logging may take place where appropriate.

Investigations may be started where reasonable suspicion exists of a breach of this or any other policy. Monitoring will be carried out in accordance with audited, controlled internal processes and applicable UK legislation.

Reporting Breaches

Suspected breaches of security policy must be reported without delay to line management, IT, information security or the IT helpdesk.

All breaches of information security policies will be investigated. Where investigations reveal misconduct, disciplinary action may follow in line with Codesplice disciplinary procedures.