Managing Legal and Operational Risk in IT Agreements

Size: px
Start display at page:

Download "Managing Legal and Operational Risk in IT Agreements"

Transcription

1 Managing Legal and Operational Risk in IT Agreements Presented by: Donna Pond, Senior Director, Lead Counsel, Shire Pharmaceuticals Evan J. Foster, Partner, Saul Ewing LLP

2 Agenda: Special issues in: Conventional Software Licenses Application Service Provider (ASP), Software as a Service (SaaS), and Cloud Subscription Agreements Software or Content Development Agreements Professional Services Agreements (Installation or Implementation) Hardware Purchase Agreements

3 TECHNOLOGY SKILLS You need to understand basic functions of what s being purchased or licensed, plus terminology But again less than you might think. Know an ASP from an ISP Some basic questions to ask, as to both technology and data : Who is creating/supplying/using? What is being created/supplied/used? Why is it being created/supplied/used? When and Where will it be created/supplied/used? How will it be created/supplied/used? What If something goes wrong?

4 Special Issues in Conventional Software Licenses Confirm that the boundaries of the right to use the software match expectations and reality: Where? Global vs. campus vs. single computer For what? Mission critical vs. Solitaire How much? One time fee vs. periodic vs. per use/user How long? Perpetual vs. limited term What form? Source code vs. object code

5 Special Issues in Conventional Software Licenses Cont d. Will the vendor perform the installation, implementation and/or configuration? What hardware, software, infrastructure and expertise are required to install, run and support this software? Does this software need to interact with other company systems (e.g., HR)? What does the company need in terms of maintenance (e.g., updates, upgrades, patches), and support (e.g., phone support, onsite service). Are there ongoing fees required to keep the license in force? Is this software generally available or is it a beta or trial version? Is this an appropriate situation for software escrow?

6 Special Issues in Application Service Provider (ASP), Software as a Service (SaaS), and Cloud/Subscription Agreements Many of the same issues found in conventional software licenses Additional issues raised by software, content, data and environment being outside of the company s control: availability/uptime backups/disaster recovery data/network security data privacy what if vendor goes dark? what if there is a dispute?

7 Special Issues in Application Service Provider (ASP), Software as a Service (SaaS), and Subscription Agreements Cont d. Response time and Availability/uptime: Usually contained in a Service Level Agreement (SLA) Response time: System must provide a meaningful response within a minimum time even at full user load Meaningful response is not an hourglass, system is busy or 404 File Not Found message System Availability: All system functions are accessible for a minimum period of time Usually measured as a percentage of the total time period (e.g % of time in a given month) Beware of carve-outs for scheduled maintenance and force majeure (e.g., failures of the vendor s infrastructure providers) Failure to meet a service level should result in a credit of fees. Multiple or repeated failures should allow the company to terminate.

8 Special Issues in Application Service Provider (ASP), Software as a Service (SaaS), and Subscription Agreements Cont d. Backups/disaster recovery: How often are backups made? Onsite or Offsite? Ability to make your own backup? Does the vendor have a disaster recovery plan? Get a copy! How often is the full plan tested? Get the results! How long will it take vendor to the company s data back online?

9 Special Issues in Application Service Provider (ASP), Software as a Service (SaaS), and Subscription Agreements Cont d. Data/network security: Increased focus due to security breaches Vendor needs to secure systems, software, data and its own premises Security audit rights? Certified compliance with published standards? SSAE 16 and ISAE 3402 audits (replaced SAS 70 in June 2011.) Type 1 auditor s opinion on service organization s description of controls in operation and suitability of the design Type 2 auditor s opinion on whether controls are actually operating effectively ISO 27000, Open Web Application Security Project (OWASP), NIST, etc.

10 Special Issues in Application Service Provider (ASP), Software as a Service (SaaS), and Subscription Agreements Cont d. Data privacy is a hot-button issue with U.S. and EU lawmakers and regulators. Numerous state data breach notification laws Gramm-Leach-Bliley, FERPA, HITECH expansion of HIPAA privacy rules other statutes Industry regulation (e.g., Payment Card Industry (PCI)) Proposed changes to EU Data Protection Directive may mean additional scrutiny The Services shall comply, and Vendor shall comply, with all applicable federal, state and local laws and regulations, including, without limitation, all restrictions relating to the privacy of any personally identifiable information or other information. Without limiting the foregoing, the Services shall comply, and Vendor shall comply, with the Family Educational Rights and Privacy Act of 1974 (20 U.S.C. Section 1232(g)), the Gramm-Leach-Bliley Act (15 U.S.C. Section 6809), the Federal Trade Commission (FTC) Standards for Safeguarding Customer Data (16 CFR Part 314), the Health Insurance Portability and Accountability Act of 1996 ( HIPAA ), the regulations promulgated thereunder by the U.S. Department of Health and Human Services (45 CFR Parts 160, 162 and 164, the HIPAA Regulations ), the Health Information Technology for Economic and Clinical Health Act of 2009 (the HITECH Act ) and the implementing regulations of the foregoing, and the requirements of the Payment Card Industry Data Security Standards Council.

11 Special Issues in Application Service Provider (ASP), Software as a Service (SaaS), and Subscription Agreements Cont d. Enhanced B2B scrutiny of data flows to subcontractors and outsourcing providers. If you are handling other people s data, your data protection/privacy obligations to those people need to flow through to data centers and cloud services providers. Need to pay attention to processes, not just physical systems. Need to align your privacy commitments with actual behavior

12 Special Issues in Application Service Provider (ASP), Software as a Service (SaaS), and Subscription Agreements Cont d. What if vendor goes dark? What if there is a dispute? Establish contract mechanisms to: Require the vendor to provide data regardless of the nature of the dispute or issue Provide for self-help or ability to mitigate risks (e.g., ability to download or export data) Allow for escalation and resolution of disputes Facilitate vendor s cooperation with transition to another provider Allow for continued use of the software (e.g., escrow?)

13 Special Issues in Software or Content Development Agreements Ownership of work product Work made for hire - must be in writing or else author retains ownership Assignment- work made for hire is limited Residual rights Bayh-Dole Act issues for development using federal funding

14 Special Issues in Software or Content Development Agreements Cont d. Development Agreements may involve an element of subjectivity and/or the unknown A clear and comprehensive Statement of Work: Defines deliverables/milestones/schedule/resources Establishes functional requirements and expectations May include checkpoints in the process Avoids scope creep and change orders It is almost always better to have a completed Statement of Work prior to execution of the agreement

15 Special Issues in Software or Content Development Agreements Cont d. What entitles the vendor to payment? Contract signing? Delivery? Milestone acceptance? Payment for performance/ holdbacks? Incentives for early delivery? A formalized testing and acceptance process is always a good idea, but is especially important when software is to exchange data with other systems or must be compatible with existing software or hardware.

16 Special Issues in Professional Services Agreements (Installation or Implementation) Successful project management starts with a project plan. Should identify company and vendor responsibilities, resources and dependencies. Statements of work (again!) Time & materials or fixed fees? Who eats overruns? Consequences of delays (by company or by vendor) Stipulated incentives/deductions for early/late performance Compliance with company policies for onsite work or remote access to company systems

17 Special Issues in Hardware Purchase Agreements Acceptance test the total package of hardware, software and services as an integrated unit Maintenance/support consider a supply of spare parts vs. onsite repair, whether refurbished parts are acceptable, and passthrough warranties Obsolescence understand the vendor s product lifecycle and negotiate for free upgrades Embedded software can software be updated without changing hardware? Delivery terms, transfer of title & risk of loss

18 Some Thoughts on the Art of Negotiation Need to figure out roles of business & legal team Think ahead Aim high Understand your leverage Don t be afraid to ask Don t be afraid to say no

19 Some Thoughts on the Art of Negotiation Cont d. Vendor tricks End of month/quarter/fiscal year deals Revenue recognition RFP just marketing PDF d documents Nobody ever asked for that Our policy is When I said, Here are my prices, what I really meant was My price is totally flexible and within reason I ll probably say yes to lowering them because we need your upfront money and recurring revenue more than I need my pride. - From Confessions of an Ex- Enterprise Salesperson

20 Tips to Remember Don t just use a form Read every word Ask questions Seek the advice of other subject matter experts within the company (e.g. IS/IT, HR, Risk Management) Put it in writing Start early

21 DISCLAIMER The content of this webinar and the presentation materials have been prepared by Saul Ewing for information purposes only. The provision and receipt of the information in this webinar and the presentation materials should not be considered legal advice, does not create a lawyer-client relationship, and should not be acted on without seeking professional counsel who have been informed of the specific facts. Should you wish to contact a presenter to obtain more information regarding your company's particular circumstances, it may be necessary to enter into an attorney/ client relationship.

Rick Ensenbach, CISSP-ISSMP, CISA, CISM, CCSFP Senior Manager, Wipfli Risk Advisory Services OBJECTIVES

Rick Ensenbach, CISSP-ISSMP, CISA, CISM, CCSFP Senior Manager, Wipfli Risk Advisory Services OBJECTIVES Rick Ensenbach, CISSP-ISSMP, CISA, CISM, CCSFP Senior Manager, Wipfli Risk Advisory Services 1 OBJECTIVES What should be done before you sign a contract with a vendor Your responsibilities throughout the

More information

Do You Know What Your Business Associates Subcontractors & Vendors Are Doing With Your PHI & ephi?

Do You Know What Your Business Associates Subcontractors & Vendors Are Doing With Your PHI & ephi? Do You Know What Your Business Associates Subcontractors & Vendors Are Doing With Your PHI & ephi? Web Hull Privacy, Data Protection, & Compliance Advisor Web.Hull@icloud.com HCCA 2017 Compliance Institute

More information

Do You Know What Your Business Associates Subcontractors & Vendors Are Doing With Your PHI & ephi?

Do You Know What Your Business Associates Subcontractors & Vendors Are Doing With Your PHI & ephi? Do You Know What Your Business Associates Subcontractors & Vendors Are Doing With Your PHI & ephi? Web Hull Privacy, Data Protection, & Compliance Advisor Web.Hull@icloud.com HCCA 2017 Compliance Institute

More information

STEPS FOR EFFECTIVE MANAGEMENT OF VENDOR AND SUPPLIER CYBERSECURITY RISKS. April 25, 2018 In-House Counsel Conference

STEPS FOR EFFECTIVE MANAGEMENT OF VENDOR AND SUPPLIER CYBERSECURITY RISKS. April 25, 2018 In-House Counsel Conference STEPS FOR EFFECTIVE MANAGEMENT OF VENDOR AND SUPPLIER CYBERSECURITY RISKS April 25, 2018 In-House Counsel Conference Presenters: Daniela Ivancikova, Assistant General Counsel, University of Delaware Evan

More information

How to Choose a Managed Services Provider

How to Choose a Managed Services Provider How to Choose a Managed Services Provider Finding Peace of Mind If you re outsourcing your IT services, you need to find a Managed Services Provider you can trust. A technology partner with the experience,

More information

VENDOR MANAGEMENT 101

VENDOR MANAGEMENT 101 VENDOR MANAGEMENT 101 Enterprise Risk Management Vendor Management Business Continuity IT GRC Internal Audit Regulatory Compliance Manager Introduction to Vendor Management About Your Presenter Andrea

More information

FREE REPORT: 5 Critical Facts Every Business Owner Must Know Before Moving Their Network to the Cloud

FREE REPORT: 5 Critical Facts Every Business Owner Must Know Before Moving Their Network to the Cloud FREE REPORT: 5 Critical Facts Every Business Owner Must Know Before Moving Their Network to the Cloud Discover What Most IT Consultants Don t Know Or Won t Tell You About Moving Your Company s Network

More information

REGULATORY HOT TOPIC Third Party IT Vendor Management

REGULATORY HOT TOPIC Third Party IT Vendor Management REGULATORY HOT TOPIC Third Party IT Vendor Management 1 Todays Outsourced Technology Services Core Processing Internet Banking Mobile Banking Managed Security Services Managed Data Center Services And

More information

RELIABLEIT. How to Choose a Managed Services Provider. Finding Peace of Mind

RELIABLEIT. How to Choose a Managed Services Provider. Finding Peace of Mind IP PATHWAYS RELIABLEIT managed services TM How to Choose a Managed Services Provider Finding Peace of Mind If you re outsourcing your IT services, you need to find a Managed Services Provider you can trust.

More information

Moving ERP Systems to the Cloud

Moving ERP Systems to the Cloud Moving ERP Systems to the Cloud Trends, Risks and Strategies for Successful Deals Rebecca Eisner Marina Aronchik Partner Senior Associate 312-701-8577 312-701-8168 reisner@mayerbrown.com maronchik@mayerbrown.com

More information

UNIVERSITY STANDARD. Title UNIVERSITY OF NORTH CAROLINA AT CHAPEL HILL STANDARD ON ENTERPRISE DATA GOVERNANCE. Introduction

UNIVERSITY STANDARD. Title UNIVERSITY OF NORTH CAROLINA AT CHAPEL HILL STANDARD ON ENTERPRISE DATA GOVERNANCE. Introduction UNIVERSITY STANDARD Issuing Office Responsible University Title UNIVERSITY OF NORTH CAROLINA AT CHAPEL HILL STANDARD ON ENTERPRISE DATA GOVERNANCE PURPOSE Introduction This Standard to the Policy on Enterprise

More information

INTELLECTUAL PROPERTY MANAGEMENT ENTERPRISE ESCROW BEST PRACTICES REPORT

INTELLECTUAL PROPERTY MANAGEMENT ENTERPRISE ESCROW BEST PRACTICES REPORT INTELLECTUAL PROPERTY MANAGEMENT ENTERPRISE ESCROW BEST PRACTICES REPORT What is Mission Critical to You? Before you acquire mission-critical technology from a third-party software vendor, take a few minutes

More information

a physicians guide to security risk assessment

a physicians guide to security risk assessment PAGE//1 a physicians guide to security risk assessment isalus healthcare isalus healthcare a physicians guide to security risk assessment table of contents INTRO 1 DO I NEED TO OUTSOURCE MY SECURITY RISK

More information

Best Practices: Vendor Risk Questionnaires PROCESSUNITY WEBINAR SERIES

Best Practices: Vendor Risk Questionnaires PROCESSUNITY WEBINAR SERIES Best Practices: Vendor Risk Questionnaires PROCESSUNITY WEBINAR SERIES Today s Presenters Tom Garrubba Senior Director Shared Assessments Bryan Burnhart Head of Strategic Alliances ProcessUnity Ed Thomas

More information

Managed Governance Services

Managed Governance Services Managed Governance Services effective sourcing governance, underpinned by powerful collaborative software Table of Contents 1 Introduction... 3 2 What is Managed Governance Services... 3 3 When is Managed

More information

VENDOR RISK MANAGEMENT FCC SERVICES

VENDOR RISK MANAGEMENT FCC SERVICES VENDOR RISK MANAGEMENT FCC SERVICES Introductions Chris Tait, CISA, CFSA, CCSK, CCSFP Principal, Financial Services Baker Tilly Russ Sommers, CPA, CISA Senior Manager, Financial Services Baker Tilly Agenda

More information

SELECTION CRITERIA AND PROCESS

SELECTION CRITERIA AND PROCESS Page 12 of 49 / ATTACHEMENT 1 - ADDENDUM 3: replace pages 12-16 with the following: Super User Training Admin Training Representatives from the IT, Legal, Finance, Neighborhood Services, and Police Departments

More information

ASC 606 For Software Companies: Step 5 - Recognizing Revenue. August 16, 2018 MEMBER OF ALLINIAL GLOBAL, AN ASSOCIATION OF LEGALLY INDEPENDENT FIRMS

ASC 606 For Software Companies: Step 5 - Recognizing Revenue. August 16, 2018 MEMBER OF ALLINIAL GLOBAL, AN ASSOCIATION OF LEGALLY INDEPENDENT FIRMS ASC 606 For Software Companies: Step 5 - Recognizing Revenue August 16, 2018 MEMBER OF ALLINIAL GLOBAL, AN ASSOCIATION OF LEGALLY INDEPENDENT FIRMS 2018 Wolf & Company, P.C. Before we get started Today

More information

Contract Review and Negotiation Strategy HealthShare LMS for RMC

Contract Review and Negotiation Strategy HealthShare LMS for RMC HEALTHSTREAM Contract Review and Negotiation Strategy HealthShare LMS for RMC Matt Valentine 12/7/2012 Contents Vendor Contract Review... 2 Negotiations... 7 Source Code Escrow... 9 Warranty... 9 BATNA...

More information

Will Your Company Pass a Privacy Audit?

Will Your Company Pass a Privacy Audit? Will Your Company Pass a Privacy Audit? by Tammi K. Franke The Issue - Companies that collect personal information are under increasing scrutiny by both consumers and governments in the United States and

More information

This is agreement is governed by the PSC Master Services Agreement (MSA) (named Master Services Agreement ) found at:

This is agreement is governed by the PSC Master Services Agreement (MSA) (named Master Services Agreement ) found at: IBM WATSON MARKETING SOFTWARE SUPPORT AGREEMENT This is agreement is governed by the PSC Master Services Agreement (MSA) (named 201804 Master Services Agreement ) found at: http://www.purplesquareconsulting.com/master-services-agreements.

More information

Strengthening Vendor Risk Management Program

Strengthening Vendor Risk Management Program Strengthening Vendor Risk Management Program ACUIA Region 5 Fall Meeting Portsmouth, N.H. October 2017 PKF O Connor Davies Risk Advisory Services Governance & Regulations Cyber-Security Risk Management

More information

IBM WATSON CAMPAIGN AUTOMATION SUPPORT AGREEMENT

IBM WATSON CAMPAIGN AUTOMATION SUPPORT AGREEMENT IBM WATSON CAMPAIGN AUTOMATION SUPPORT AGREEMENT This is agreement is governed by the PSC Master Services Agreement (MSA) (named 201711 Master Services Agreement ) found at: http://www.purplesquareconsulting.com/master-services-agreements.

More information

IBM Emptoris Services Procurement on Cloud

IBM Emptoris Services Procurement on Cloud Service Description IBM Emptoris Services Procurement on Cloud This Service Description describes the Cloud Service IBM provides to Client. Client means the company and its authorized users and recipients

More information

UNIVERSITY OF OKLAHOMA Campus Payment Card Security Standard Norman Campus

UNIVERSITY OF OKLAHOMA Campus Payment Card Security Standard Norman Campus UNIVERSITY OF OKLAHOMA Campus Payment Card Security Norman Campus Subject: Campus Payment Card Security Coverage: The University of Oklahoma Norman Campus Regulation: Payment Card Industry ( PCI ) Data

More information

Managing the Business Associate Relationship: From Onboarding to Breaches. March 27, 2016

Managing the Business Associate Relationship: From Onboarding to Breaches. March 27, 2016 Managing the Business Associate Relationship: From Onboarding to Breaches March 27, 2016 HCCA s 21 st Annual Compliance Institute National Harbor, MD Today s Agenda Onboarding: Health care providers and

More information

Vendor Management Challenges and Expectations An Open Discussion April 13, 2017

Vendor Management Challenges and Expectations An Open Discussion April 13, 2017 1 Practical solutions driving tangible results Vendor Management Challenges and Expectations An Open Discussion April 13, 2017 Agenda Common Themes Discussion Expectations Overcoming Obstacles Common Comments

More information

A PRIMER on GDPR and MARKETING DATA PROTECTION BEST PRACTICES

A PRIMER on GDPR and MARKETING DATA PROTECTION BEST PRACTICES A PRIMER on GDPR and MARKETING DATA PROTECTION BEST PRACTICES May 25, 2018 is a date on the minds of many sales and marketing professionals: the day the new General Data Protection Regulation (GDPR) goes

More information

IBM Emptoris Strategic Supply Management on Cloud

IBM Emptoris Strategic Supply Management on Cloud Service Description IBM Emptoris Strategic Supply Management on Cloud This Service Description describes the Cloud Service IBM provides to Client. Client means the company and its authorized users and

More information

How Much Will Serialization Really Cost? AN INTRODUCTION TO THE TOTAL COST OF OWNERSHIP

How Much Will Serialization Really Cost? AN INTRODUCTION TO THE TOTAL COST OF OWNERSHIP How Much Will Serialization Really Cost? AN INTRODUCTION TO THE TOTAL COST OF OWNERSHIP TABLE OF CONTENTS Introduction Breaking down the whole iceberg What is Total Cost of Ownership? Acquisition is Just

More information

Securely Access Data. Reduce Costs. Focus on Care, not IT. NextGen Managed Cloud Services

Securely Access Data. Reduce Costs. Focus on Care, not IT. NextGen Managed Cloud Services Securely Access Data. Reduce Costs. Focus on Care, not IT. NextGen Managed Cloud Services To succeed and evolve successfully in today s changing healthcare environment, you need to make smart decisions.

More information

Switching from Basic to Advanced Accounting Software

Switching from Basic to Advanced Accounting Software The Complete Guide to Switching from Basic to Advanced Accounting Software An ebook published by: Red Wing Software, Inc. Table of Contents a Chapter 1 Signs You Are Outgrowing Your Basic Accounting System...1

More information

Evaluating Cloud Based Software Offerings

Evaluating Cloud Based Software Offerings Douglas P Allen, CRM, CDIA+ 2 AGENDA Introduction & Background Everything old is new again What is the cloud and what are the advantages & What are the risks? What makes land records unique? Internal Considerations

More information

Drive Your Business. Four Ways to Improve Your Vendor Risk Program

Drive Your Business. Four Ways to Improve Your Vendor Risk Program Drive Your Business Four Ways to Improve Your Vendor Risk Program Introduction Risk-management professionals often find the creation of a vendor risk management (VRM) program to be a challenging task,

More information

Internet of Things and Privacy Issues

Internet of Things and Privacy Issues The Iowa State Bar Association s ecommerce & Intellectual Property Law Sections presents 2015 ecommerce & Intellectual Property Law Seminar Internet of Things and Privacy Issues 9:30 10:15 am Presented

More information

Guardian Support and Guardian Support + Repair for Portable Analyzers and Online Systems

Guardian Support and Guardian Support + Repair for Portable Analyzers and Online Systems Guardian Support and Guardian Support + Repair for Portable Analyzers and Online Systems Risk management Lifecycle management Incident management Service Data Sheet Offering extended value and flexibility

More information

IT Service Delivery And Support Week Seven: SLA. IT Auditing and Cyber Security Fall 2016 Instructor: Liang Yao

IT Service Delivery And Support Week Seven: SLA. IT Auditing and Cyber Security Fall 2016 Instructor: Liang Yao IT Service Delivery And Support Week Seven: SLA IT Auditing and Cyber Security Fall 2016 Instructor: Liang Yao 1 Outsourcing Drivers Outsourced IT Works Outsourced IT Activity Samples Top Three Outsourcing

More information

How to Select a Certified EHR

How to Select a Certified EHR How to Select a Certified EHR Selecting an EHR system is a critical decision and a significant planning task. There are different opinions regarding when the selection of an EHR system should be made in

More information

Choosing The Right EHR For You: Best Practices In Vendor Selection & Contracting

Choosing The Right EHR For You: Best Practices In Vendor Selection & Contracting Choosing The Right EHR For You: Best Practices In Vendor Selection & Contracting Presented By: Joseph Naughton-Travers, Ed.M., Senior Associate, OPEN MINDS Presented On: July 26, 2013 An OPEN MINDS Executive

More information

NTT DATA Service Description

NTT DATA Service Description NTT DATA Service Description NTT DATA Managed Services for Microsoft Azure Site Introduction NTT DATA is pleased to provide NTT DATA Managed Services for Microsoft Azure Site (the Service(s) ) in accordance

More information

Data Reliability - Internet

Data Reliability - Internet Data Reliability - Internet Wikipedia https://en.wikipedia.org/wiki/reliability_of_wikipedia Others http://www.dailymail.co.uk/health/article- 2639910/Do-NOT-try-diagnose-Wikipedia-90-medicalentries-inaccurate-say-expertsDo.html

More information

HOW TO DRIVE A TRANSACTION WITHOUT IT DRIVING YOU (CRAZY)

HOW TO DRIVE A TRANSACTION WITHOUT IT DRIVING YOU (CRAZY) 1 HOW TO DRIVE A TRANSACTION WITHOUT IT DRIVING YOU (CRAZY) How to address the Internal Transaction Ghost in the Corporate Room 2016 In House Counsel Conference 2 Disclaimer: THE VIEWS AND OPINIONS EXPRESSED

More information

Enterprise Content Management and Business Process Management

Enterprise Content Management and Business Process Management Enterprise Content Management and Business Process Management You Don t Have to Own IT to Control IT SM The changing business needs for Enterprise Content Management (ECM) and Business Process Management

More information

Report to: General Committee Meeting Date: May 07, 2018

Report to: General Committee Meeting Date: May 07, 2018 Report to: General Committee Meeting Date: May 07, 2018 SUBJECT: Award of Proposal 062-R-16 Supply and Implementation of a Program Administration Facility Booking System (PAFBS) with Point of Sale (POS)

More information

Guardian Support and Guardian Support + Repair for Portable Analyzers and Online Systems

Guardian Support and Guardian Support + Repair for Portable Analyzers and Online Systems Guardian Support and Guardian Support + Repair for Portable Analyzers and Online Systems Risk management Lifecycle management Incident management Service Data Sheet Offering extended value and flexibility

More information

USER GUIDE GLOBAL CUSTOMER SUCCESS. CA Technologies New User Guide. Get the most out of your CA experience

USER GUIDE GLOBAL CUSTOMER SUCCESS. CA Technologies New User Guide. Get the most out of your CA experience USER GUIDE GLOBAL CUSTOMER SUCCESS CA Technologies New Guide Get the most out of your CA experience 2 CA TECHNOLOGIES NEW USER GUIDE ca.com Welcome to CA Technologies Welcome to CA Technologies. We appreciate

More information

Navigating the New Health Economy

Navigating the New Health Economy Navigating the New Health Economy How non-traditional healthcare players are using the HITRUST CSF to drive their security programs forward Speakers Dennis Quandt Risk Assurance Director, PwC Boston, MA

More information

CONTACT CENTERS OF THE FUTURE

CONTACT CENTERS OF THE FUTURE CONTACT CENTERS OF THE FUTURE As customer service trends change and consumer demands for service and security expand, contact centers need to evolve in order to keep up. What services, features and technology

More information

Top 5 Reasons Your Business Needs the Cloud

Top 5 Reasons Your Business Needs the Cloud Top 5 Reasons Your Business Needs the Cloud Featuring: Michael Goeke, Epicor Eric Smith, Modern Distribution Management Sponsored by: May 24, 2016 Agenda Introduction Business priorities for distributors

More information

LEVERAGING YOUR VENDORS TO SUPPORT DATA INTEGRITY:

LEVERAGING YOUR VENDORS TO SUPPORT DATA INTEGRITY: LEVERAGING YOUR VENDORS TO SUPPORT DATA INTEGRITY: QUESTIONS TO ASK AND RESPONSIBILITIES TO DOCUMENT Heather Longden Boston Chapter Educational Meeting April 2018 About Waters Lab Informatics Separations

More information

An Employer s Guide to Payroll Cards

An Employer s Guide to Payroll Cards An Employer s Guide to Payroll Cards An important part of your role as an employer is to ensure that you pay your workers promptly and accurately, and that you comply with federal and state payroll laws

More information

PCI Data Breach Preparedness How To Prevent Your Organization From Becoming the Next Data Breach Headline

PCI Data Breach Preparedness How To Prevent Your Organization From Becoming the Next Data Breach Headline PCI Data Breach Preparedness How To Prevent Your Organization From Becoming the Next Data Breach Headline Presented by the Bryan Cave Payments Team and Special Guest Speaker Andi Baritchi Agenda Introduction

More information

What are the key considerations for choosing cloud or on-premise budgeting software? How to determine what's the best for your organization.

What are the key considerations for choosing cloud or on-premise budgeting software? How to determine what's the best for your organization. What are the key considerations for choosing cloud or on-premise budgeting software? How to determine what's the best for your organization. What are the key considerations for choosing cloud or on-premise

More information

Third Party Vendor Management and FDR Compliance

Third Party Vendor Management and FDR Compliance Smart decisions. Lasting value. Third Party Vendor Management and FDR Compliance Healthcare Summit 2018: Simplifying Healthcare September 18, 2018 Jason Lackey, Cigna-HealthSpring Scott Gerard, Crowe Matt

More information

Tech & Cloud Contract Management. A Small College Perspective

Tech & Cloud Contract Management. A Small College Perspective Tech & Cloud Contract Management A Small College Perspective The Problem: Vendors want to take NO responsibility Sales says You don t need the IT folks for this Even though you don t need the IT folks

More information

LEGACY DECOMMISSIONING: GOOD FOR THE BUDGET, GOOD FOR COMPLIANCE

LEGACY DECOMMISSIONING: GOOD FOR THE BUDGET, GOOD FOR COMPLIANCE LEGACY DECOMMISSIONING: GOOD FOR THE BUDGET, GOOD FOR COMPLIANCE EXECUTIVE SUMMARY Historical information is tremendously important to the business for regulatory compliance and research. Preserving and

More information

ONLINE OR ON PREMISE?

ONLINE OR ON PREMISE? ONLINE OR ON PREMISE? A series of mini webinars by Chris Vandersluis President, HMS Software Email: chris.vandersluis@gmail.com LinkedIn: www.linkedin.com/in/cvandersluis Web: www.timecontrol.com Webinar

More information

Solution Support Base Module for SAP HANA on Power Systems (SOW SSS - TS SAP HANA) - Acquired from an IBM Business Partner -

Solution Support Base Module for SAP HANA on Power Systems (SOW SSS - TS SAP HANA) - Acquired from an IBM Business Partner - Statement of Work Solution Support Base Module for SAP HANA on Power Systems (SOW SSS - TS SAP HANA) - Acquired from an IBM Business Partner - Edition May 2016 1. Subject IBM will provide the Services

More information

OpenText RightFax. OpenText RightFax OnDemand. Product Brochure. Benefits

OpenText RightFax. OpenText RightFax OnDemand. Product Brochure. Benefits OpenText RightFax OnDemand Benefits Reduced IT Load Managed by fax experts Disaster recovery service Redundancy options Complete Control Centralized fax management You own your data Bring and keep your

More information

ERP Selection for Multi-faceted Higher Education Systems in the Software-as-a-Service Era

ERP Selection for Multi-faceted Higher Education Systems in the Software-as-a-Service Era ERP Selection for Multi-faceted Higher Education Systems in the Software-as-a-Service Era Steven Fulkerson, President s Delegate, ERP Selection Committee, The University of Arkansas System David Hemingson,

More information

Is Your Credit Union at Risk? Five Key Due Diligence Questions to Ask Your Vendors

Is Your Credit Union at Risk? Five Key Due Diligence Questions to Ask Your Vendors Is Your Credit Union at Risk? Five Key Due Diligence Questions to Ask Your Vendors About Vanessa Stanfield Vanessa Stanfield Client Program Director, Vendor Management vstanfield@affiniongroup.com Vanessa

More information

IBM Facilities and Real Estate Management on Cloud (TRIRIGA)

IBM Facilities and Real Estate Management on Cloud (TRIRIGA) Service Description IBM Facilities and Real Estate Management on Cloud (TRIRIGA) This Service Description describes the Cloud Service IBM provides to Client. Client means the company and its authorized

More information

Choosing The Right EHR For You: Best Practices In Vendor Selection & Contracting

Choosing The Right EHR For You: Best Practices In Vendor Selection & Contracting Choosing The Right EHR For You: Best Practices In Vendor Selection & Contracting Presented By: Joseph Naughton-Travers, Ed.M., Senior Associate, OPEN MINDS Presented On: October 8, 2013 An OPEN MINDS Executive

More information

Outsourcing Governance. Part 2 Using the Contract Tools

Outsourcing Governance. Part 2 Using the Contract Tools 1. Introduction Outsourcing Governance Part 2 Using the s Successfully managing an outsourcing contract requires customers both to include the right governance tools and mechanisms in their contracts and

More information

Top 2018 Considerations for IT Budget & Planning. Joe McIntyre & Brad Sprague

Top 2018 Considerations for IT Budget & Planning. Joe McIntyre & Brad Sprague Top 2018 Considerations for IT Budget & Planning Presented By: Systems Engineering s Joe McIntyre & Brad Sprague About Us 30+ years combined IT experience Work actively with current and potential clients

More information

Contract Change Management

Contract Change Management Slide 1 Change Control Management Welcome to this module on Change Control Management. Slide 2 This module addresses the factors of change and will help you to understand how to control project changes

More information

Getting In and Getting Out: Practical Tips for Engaging and Disengaging from Technology & Business Process Outsourcings

Getting In and Getting Out: Practical Tips for Engaging and Disengaging from Technology & Business Process Outsourcings Getting In and Getting Out: Practical Tips for Engaging and Disengaging from Technology & Business Process Outsourcings Presentation for the Association of Corporate Counsel August 23, 2012 Charlotte,

More information

What Contract Risks are Hiding in the Cloud?

What Contract Risks are Hiding in the Cloud? What Contract Risks are Hiding in the Cloud? July 21, 2015 webinar Presented by: Tim Cummins, IACCM & David Strouse, Iron Mountain 2015 Iron Mountain Incorporated. All rights reserved. Iron Mountain and

More information

IBM Business Process Manager on Cloud

IBM Business Process Manager on Cloud Service Description IBM Business Process Manager on Cloud This Service Description describes the Cloud Service IBM provides to Client. Client means the company and its authorized users and recipients of

More information

IBM Business Process Manager on Cloud

IBM Business Process Manager on Cloud Service Description IBM Business Process Manager on Cloud This Service Description describes the Cloud Service IBM provides to Client. Client means the company and its authorized users and recipients of

More information

The Quality Payment Program in 2019: What to Know About Upgrading Your EHR

The Quality Payment Program in 2019: What to Know About Upgrading Your EHR Transcript Details This is a transcript of an educational program accessible on the ReachMD network. Details about the program and additional media formats for the program are accessible by visiting: https://reachmd.com/programs/inside-medicares-new-payment-system/the-quality-payment-program-in-

More information

Payment Terminal Services Description

Payment Terminal Services Description Payment Terminal Services Description Version date: March 2018 1 Introduction This document describes the following standard services Adyen provides to the Merchant with respect to Payment Terminals provided

More information

Moving to the cloud: A guide to cloud business management technology

Moving to the cloud: A guide to cloud business management technology Moving to the cloud: A guide to cloud business management technology 2 Contents This guide is for companies considering moving to a cloud business management system or cloud ERP. Using researched evidence,

More information

Background Verification. Request for Proposal Guide

Background Verification. Request for Proposal Guide Background Verification Request for Proposal Guide A Guide for Organizations to submit a Request for Proposal for Background Screening. This Guide was developed for employers and other organizations, such

More information

Buyers Guide to ERP Business Management Software

Buyers Guide to ERP Business Management Software Buyers Guide to ERP Business Management Software one 1. Introduction When you search for ERP or Enterprise Resource Planning on the web, the sheer amount of information that appears can be overwhelming

More information

4 Critical Facts Every Business Owner Must Know Before Moving Their Network To The Cloud

4 Critical Facts Every Business Owner Must Know Before Moving Their Network To The Cloud 4 Critical Facts Every Business Owner Must Know Before Moving Their Network To The Cloud This report is going to talk about 4 very important facts you need to know before you consider cloud computing for

More information

Ensuring Organizational & Enterprise Resiliency with Third Parties

Ensuring Organizational & Enterprise Resiliency with Third Parties Ensuring Organizational & Enterprise Resiliency with Third Parties Geno Pandolfi Tuesday, May 17, 2016 Room 7&8 (1:30-2:15 PM) Session Review Objectives Approaches to Third Party Risk Management Core Concepts

More information

Not-for-Profit but Rich in Data: The Unique Privacy Needs of Nonprofits

Not-for-Profit but Rich in Data: The Unique Privacy Needs of Nonprofits Not-for-Profit but Rich in Data: The Unique Privacy Needs of Nonprofits Association of Corporate Counsel-National Capital Region, Nonprofits and Associations Forum Thursday, December 7, 2017 LA / NY /

More information

Software Comparison Series Comparing Cloud & On-Premise Solutions

Software Comparison Series Comparing Cloud & On-Premise Solutions Software Comparison Series Comparing Cloud & On-Premise Solutions Transforming Companies How to Begin Transforming your business is no easy feat. Today s software solutions are constantly evolving and

More information

IBM Clinical Trial Management System for Sites

IBM Clinical Trial Management System for Sites Service Description IBM Clinical Trial Management System for Sites This Service Description describes the Cloud Service IBM provides to Client. Client means the contracting party and its authorized users

More information

SYSTEM SOFTWARE MAINTENANCE AND SUPPORT SERVICES (Premium 24x7)

SYSTEM SOFTWARE MAINTENANCE AND SUPPORT SERVICES (Premium 24x7) SYSTEM SOFTWARE MAINTENANCE AND SUPPORT SERVICES (Premium 24x7) These Premium 24x7 System Software Maintenance and Support Service terms and conditions ( Terms and Conditions ) apply to any quote, order,

More information

Customer FIRST Program Guide. Best-in-Class Software Maintenance, Support and Services Getting Maximum Value from Your Wonderware Software

Customer FIRST Program Guide. Best-in-Class Software Maintenance, Support and Services Getting Maximum Value from Your Wonderware Software Customer FIRST Program Guide Best-in-Class Software Maintenance, Support and Services Getting Maximum Value from Your Wonderware Software wonderware.com/support for Wonderware 2 wonderware.com/support

More information

Hosted UC: the Total Cost of Ownership

Hosted UC: the Total Cost of Ownership Hosted UC: the Total Cost of Ownership WITH HOSTED UC, NO TWO SYSTEMS ARE ALIKE. FEATURES CAN BE ENABLED OR DISABLED ACROSS THE ENTERPRISE OR PER USER. A STUDY FROM INFONETICS RESEARCH FOUND THAT NEARLY

More information

WHITE PAPER. How Startup Businesses Can Maximize Human Capital 10 Principles for building an effective human capital plan

WHITE PAPER. How Startup Businesses Can Maximize Human Capital 10 Principles for building an effective human capital plan WHITE PAPER How Startup Businesses Can Maximize Human Capital 10 Principles for building an effective human capital plan What is Human Capital? Your startup s competences, knowledge, and personality attributes

More information

Total Support for SAP HANA Appliances

Total Support for SAP HANA Appliances Statement of Work for Services 1. Scope of Work Total Support for SAP HANA Appliances IBM will provide the services specified in this Statement of Work: "IBM Total Solution Support for SAP In- Memory Appliances

More information

Building an IT Roadmap. Planning for technology initiatives aid in successful and timely implementation of IT projects

Building an IT Roadmap. Planning for technology initiatives aid in successful and timely implementation of IT projects Building an IT Roadmap Planning for technology initiatives aid in successful and timely implementation of IT projects Table of Contents Guide: How to develop a 18-36 month IT roadmap...1 Why is it important

More information

Software Zix Resale Service Agreement. 1.0 Terminology. 3.0 Service Options. 4.0 Service Delivery. 2.0 Service Description

Software Zix Resale Service Agreement. 1.0 Terminology. 3.0 Service Options. 4.0 Service Delivery. 2.0 Service Description This Software Zix Resale Service Agreement ( Service Agreement ) sets forth the specific terms and conditions under which LightEdge Solutions, Inc. ( LightEdge ) shall supply certain Services to Customer.

More information

Meaningful Use Audit Process: Focus on Outcomes and Security

Meaningful Use Audit Process: Focus on Outcomes and Security Meaningful Use Audit Process: Focus on Outcomes and Security Phyllis A. Patrick, MBA, FACHE, CHC The 22nd National HIPAA Summit February 6, 2014 Phyllis A. Patrick & Associates LLC Topics Meaningful Use

More information

Vol. 2 Management RFP No. QTA0015THA A2-2

Vol. 2 Management RFP No. QTA0015THA A2-2 Manufacturing and Assembly: All MetTel manufacturing and assembly activities are focused on the reduction of supply chain risk. MetTel s SCRM Plan and the associated Systems Acquisition (SA) controls for

More information

Emerging Technology and Security Update

Emerging Technology and Security Update Emerging Technology and Security Update February 13, 2015 Jordan Reed Managing Director Agenda 2015 Internal Audit Capabilities and Needs Survey 2014 IT Priorities Survey Results 2014 IT Security and Privacy

More information

IT Alignment and The Cloud. How Cloud Computing Can Help Your Organization s Technology Management

IT Alignment and The Cloud. How Cloud Computing Can Help Your Organization s Technology Management IT Alignment and The Cloud How Cloud Computing Can Help Your Organization s Technology Management Agenda IT Alignment and The Cloud Q & A Session Facebook and NTEN signups Who is Elisabeth Kübler-Ross?

More information

Building a Business Case for Office 365. Making the case for providing your workers with increased accessibility to Office applications while

Building a Business Case for Office 365. Making the case for providing your workers with increased accessibility to Office applications while Building a Business Case for Office 365. Making the case for providing your workers with increased accessibility to Office applications while significantly reducing IT costs. CONTENTS. INTRODUCTION....

More information

From the Front Lines: Navigating the OCR Phase 2 HIPAA Audits

From the Front Lines: Navigating the OCR Phase 2 HIPAA Audits View the Replay From the Front Lines: Navigating the OCR Phase 2 HIPAA Audits June 16, 2016 Executive Series Webinar Today s Speakers Carla Wagner, HCISPP Privacy Officer Beacon Health System Trish A.

More information

Security Monitoring Service Description

Security Monitoring Service Description Security Monitoring Service Description Contents Section 1: UnderdefenseSOC Security Monitoring Service Overview 3 Section 2: Key Components of the Service 4 Section 3: Onboarding Process 5 Section 4:

More information

USING FREVVO S CLOUD FOR SECURE APPROVAL WORKFLOWS

USING FREVVO S CLOUD FOR SECURE APPROVAL WORKFLOWS USING FREVVO S CLOUD FOR SECURE APPROVAL WORKFLOWS CONTENTS 03 WHAT ARE APPROVAL WORKFLOWS? 09 PUBLIC OR PRIVATE CLOUD? 16 IS FREVVO S CLOUD SECURE? 20 WILL IT SAVE ME MONEY? 27 WHAT MORE SHOULD I KNOW?

More information

A Guide to Building a Healthy Dental Practice. technology mistakes that can damage or destroy 7 your dental practice - and how to avoid them

A Guide to Building a Healthy Dental Practice. technology mistakes that can damage or destroy 7 your dental practice - and how to avoid them A Guide to Building a Healthy Dental Practice technology mistakes that can damage or destroy 7 your dental practice - and how to avoid them Today s dental practices face a myriad of information technology

More information

IBM Tealeaf Customer Experience on Cloud

IBM Tealeaf Customer Experience on Cloud Service Description IBM Tealeaf Customer Experience on Cloud This Service Description describes the Cloud Service IBM provides to Client. Client means the contracting party and its authorized users and

More information

Service Level Agreement (SLA)

Service Level Agreement (SLA) Service Level Agreement (SLA) Commitment Green Cloud commits to Customer that the Green Cloud network and the Green Cloud infrastructure supporting Cloud Services will be available at all times (100% uptime)

More information

IBM Facilities and Real Estate Management on Cloud (TRIRIGA)

IBM Facilities and Real Estate Management on Cloud (TRIRIGA) IBM Terms of Use SaaS Specific Offering Terms IBM Facilities and Real Estate Management on Cloud (TRIRIGA) The Terms of Use ( ToU ) is composed of this IBM Terms of Use - SaaS Specific Offering Terms (

More information

Compliance Case Studies

Compliance Case Studies Compliance Case Studies What Can Go Wrong and How Can We Learn from Others? Caron Cullen, Sr. Vice President & Compliance Officer, Affinity Health Plan Virgilio Florentino, Principal, Compliance Strategies,

More information