Reference no: EM133985387
Question
Reviewing Documents (Non-disclosure agreements NDA)
Similar to reviewing security policies, a CASP+ might need to review business documents such as disclosure agreements or service agreements. You might be asked to review such a document by the company lawyer or a senior executive familiar with the conditions of the document, but
not necessarily have the technical expertise to assess its feasibility.
1. Does your company have or make use of an NDA? If no, an NDA should be created.
2. Is the existing or proposed NDA a one-way or a two-way NDA? A one-way NDA protects only the information of the company. Two-way NDAs are designed to protect the confidential information of both the client and the company.
3. Does the NDA clearly define confidential information?
4. Are controls put in place to protect confidential information?
5. What are the obligations of the receiving party? What level of protection must they apply to the information they have received?
6. What time period applies to the NDA? Most NDAs don't last forever and have a time period applied-such as 1 year, 6 years, or 10 years.
7. Based on the previous questions, are you happy with your findings?